MEDIUM · 6.5

CVE-2025-7375

A denial-of-service (DoS) vulnerability was identified in Omada EAP610 v3. An attacker with adjacent network access can send crafted requests to cause the device’s HTTP service to crash. This result...

Vulnerability Description

A denial-of-service (DoS) vulnerability was identified in Omada EAP610 v3. An attacker with adjacent network access can send crafted requests to cause the device’s HTTP service to crash. This results in temporary service unavailability until the device is rebooted. This issue affects Omada EAP610 firmware versions prior to 1.6.0.

CVSS Score

6.5

MEDIUM

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
Tp-LinkOmada Eap610 Firmware< 1.6.0
Tp-LinkOmada Eap6103

Related Weaknesses (CWE)

References

FAQ

What is CVE-2025-7375?

CVE-2025-7375 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A denial-of-service (DoS) vulnerability was identified in Omada EAP610 v3. An attacker with adjacent network access can send crafted requests to cause the device’s HTTP service to crash. This result...

How severe is CVE-2025-7375?

CVE-2025-7375 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2025-7375?

Check the references section above for vendor advisories and patch information. Affected products include: Tp-Link Omada Eap610 Firmware, Tp-Link Omada Eap610.