More

    TP-Link routers hit again as fresh vulnerabilities exposed deep firmware cracks, leading to full remote device control




    • CVE-2025-7851 stems from residual debug code left in patched firmware
    • CVE-2025-7850 enables command injection through the WireGuard VPN interface
    • Exploiting one vulnerability made the other easier to trigger successfully

    Two newly disclosed flaws in TP-Link’s Omada and Festa VPN routers have exposed deep-seated weaknesses in the company’s firmware security.

    The vulnerabilities, tracked as CVE-2025-7850 and CVE-2025-7851, were identified by researchers from Forescout’s Vedere Labs.


    https://cdn.mos.cms.futurecdn.net/JpXukHGqkZ8gapEzDQNqRW-1920-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img