Vulnerability Description
A denial-of-service (DoS) vulnerability was identified in Omada EAP610 v3. An attacker with adjacent network access can send crafted requests to cause the device’s HTTP service to crash. This results in temporary service unavailability until the device is rebooted. This issue affects Omada EAP610 firmware versions prior to 1.6.0.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tp-Link | Omada Eap610 Firmware | < 1.6.0 |
| Tp-Link | Omada Eap610 | 3 |
Related Weaknesses (CWE)
References
- https://support.omadanetworks.com/en/product/eap610/v3/Product
- https://support.omadanetworks.com/us/document/118100/Vendor Advisory
- https://support.omadanetworks.com/us/product/eap610/v3/Product
FAQ
What is CVE-2025-7375?
CVE-2025-7375 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A denial-of-service (DoS) vulnerability was identified in Omada EAP610 v3. An attacker with adjacent network access can send crafted requests to cause the device’s HTTP service to crash. This result...
How severe is CVE-2025-7375?
CVE-2025-7375 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-7375?
Check the references section above for vendor advisories and patch information. Affected products include: Tp-Link Omada Eap610 Firmware, Tp-Link Omada Eap610.