CVE-2025-7850: Authenticated OS command execution
Published Oct 21, 2025
·Updated
A command injection vulnerability may be exploited after the admin's authentication on the web portal on Omada gateways.
Affected Software
40 affected components
Omada Gateways
All of the following
Any of the following
TP-Link Er8411 Firmware<1.3.3
TP-Link Er8411 Firmware=1.3.3
TP-Link Er8411
All of the following
Any of the following
TP-Link Er7412-m2 Firmware<1.1.0
TP-Link Er7412-m2 Firmware=1.1.0
TP-Link Er7412-m2
All of the following
Any of the following
TP-Link Er707-m2 Firmware<1.3.1
TP-Link Er707-m2 Firmware=1.3.1
TP-Link Er707-m2
All of the following
Any of the following
TP-Link Er7206 Firmware<2.2.2
TP-Link Er7206 Firmware=2.2.2
TP-Link ER7206
All of the following
Any of the following
TP-Link Er605 Firmware<2.3.1
TP-Link Er605 Firmware=2.3.1
TP-Link Er605
All of the following
Any of the following
TP-Link Er706w Firmware<1.2.1
TP-Link Er706w Firmware=1.2.1
TP-Link Er706w
All of the following
Any of the following
TP-Link Er706w-4g Firmware<1.2.1
TP-Link Er706w-4g Firmware=1.2.1
TP-Link Er706w-4g
All of the following
Any of the following
TP-Link Er7212pc Firmware<2.1.3
TP-Link Er7212pc Firmware=2.1.3
TP-Link Er7212pc
All of the following
Any of the following
TP-Link G36 Firmware<1.1.4
TP-Link G36 Firmware=1.1.4
TP-Link G36
All of the following
Any of the following
TP-Link G611 Firmware<1.2.2
TP-Link G611 Firmware=1.2.2
TP-Link G611
All of the following
Any of the following
TP-Link Fr365 Firmware<1.1.10
TP-Link Fr365 Firmware=1.1.10
TP-Link Fr365
All of the following
Any of the following
TP-Link Fr205 Firmware<1.0.3
TP-Link Fr205 Firmware=1.0.3
TP-Link Fr205
All of the following
Any of the following
TP-Link Fr307-m2 Firmware<1.2.5
TP-Link Fr307-m2 Firmware=1.2.5
TP-Link Fr307-m2
Event History
Oct 21, 2025
CVE Published
via MITRE·12:28 AM
Data Sourced
via MITRE·12:28 AM
DescriptionWeakness
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
News Published
via BleepingComputer·09:11 PM
News Published
via BleepingComputer·09:13 PM
Aug 4, 2026
News Published
via BleepingComputer·10:18 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-7850?
CVE-2025-7850 has a critical severity due to its potential for command injection after admin authentication.
2
How do I fix CVE-2025-7850?
To fix CVE-2025-7850, ensure you update to the latest firmware version provided by Omada for the gateways.
3
What systems are affected by CVE-2025-7850?
CVE-2025-7850 affects Omada Gateways that utilize the web portal for administrative access.
4
What type of vulnerability is CVE-2025-7850?
CVE-2025-7850 is classified as a command injection vulnerability.
5
Is CVE-2025-7850 being actively exploited?
There are currently no known reports of CVE-2025-7850 being actively exploited in the wild.