9.8

CVE-2026-1668

Input Validation Vulnerability on Multiple Omada Switches

The web interface on multiple Omada switches does not adequately validate certain external inputs, which may lead to out-of-bound memory access when processing crafted requests.  Under specific conditions, this flaw may result in unintended command execution.<br>An unauthenticated attacker with network access to the affected interface may cause memory corruption, service instability, or information disclosure.  Successful exploitation may allow remote code execution or denial-of-service.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Tp-linkOmada Sg2005p-pd Firmware Version >= 1.0.0 < 1.0.19
   Tp-linkOmada Sg2005p-pd Version-
Tp-linkOmada Sg2008 Firmware Version >= 4.20.0 < 4.20.17
   Tp-linkOmada Sg2008 Version-
Tp-linkOmada Sg2008 Firmware Version >= 4.30.0 < 4.30.1
   Tp-linkOmada Sg2008 Version-
Tp-linkOmada Sg2008p Firmware Version >= 3.20.0 < 3.20.17
   Tp-linkOmada Sg2008p Version-
Tp-linkOmada Sg2008p Firmware Version >= 3.30.0 < 3.30.1
   Tp-linkOmada Sg2008p Version-
Tp-linkOmada Sg2016p Firmware Version >= 1.20.0 < 1.20.17
   Tp-linkOmada Sg2016p Version-
Tp-linkOmada Sg2016p Firmware Version >= 1.30.0 < 1.30.1
   Tp-linkOmada Sg2016p Version-
Tp-linkOmada Sg2210mp Firmware Version >= 4.20.0 < 4.20.18
   Tp-linkOmada Sg2210mp Version-
Tp-linkOmada Sg2210mp Firmware Version >= 5.0.0 < 5.0.15
   Tp-linkOmada Sg2210mp Version-
Tp-linkOmada Sg2210mp Firmware Version >= 5.20.0 < 5.20.1
   Tp-linkOmada Sg2210mp Version-
Tp-linkOmada Sg2210p Firmware Version >= 5.20.0 < 5.20.18
   Tp-linkOmada Sg2210p Version-
Tp-linkOmada Sg2210p Firmware Version >= 5.30.0 < 5.30.1
   Tp-linkOmada Sg2210p Version-
Tp-linkOmada Sg2210xmp-m2 Firmware Version >= 1.0.0 < 1.0.19
   Tp-linkOmada Sg2210xmp-m2 Version-
Tp-linkOmada Sg2218 Firmware Version >= 1.20.0 < 1.20.17
   Tp-linkOmada Sg2218 Version-
Tp-linkOmada Sg2218 Firmware Version >= 1.30.0 < 1.30.1
   Tp-linkOmada Sg2218 Version-
Tp-linkOmada Sg2218p Firmware Version >= 1.20.0 < 1.20.17
   Tp-linkOmada Sg2218p Version-
Tp-linkOmada Sg2218p Firmware Version >= 2.0.0 < 2.0.14
   Tp-linkOmada Sg2218p Version-
Tp-linkOmada Sg2218p Firmware Version >= 2.20.0 < 2.20.2
   Tp-linkOmada Sg2218p Version-
Tp-linkOmada Sg2428lp Firmware Version >= 1.0.0 < 1.0.13
   Tp-linkOmada Sg2428lp Version-
Tp-linkOmada Sg2428p Firmware Version >= 5.20.0 < 5.20.20
   Tp-linkOmada Sg2428p Version-
Tp-linkOmada Sg2428p Firmware Version >= 5.30.0 < 5.30.16
   Tp-linkOmada Sg2428p Version-
Tp-linkOmada Sg2452lp Firmware Version >= 1.0.0 < 1.0.13
   Tp-linkOmada Sg2452lp Version-
Tp-linkOmada Sg3210 Firmware Version >= 3.20.0 < 3.20.17
   Tp-linkOmada Sg3210 Version-
Tp-linkOmada Sg3210 Firmware Version >= 3.30.0 < 3.30.1
   Tp-linkOmada Sg3210 Version-
Tp-linkOmada Sg3210xhp-m2 Firmware Version >= 3.0.0 < 3.0.21
   Tp-linkOmada Sg3210xhp-m2 Version-
Tp-linkOmada Sg3210x-m2 Firmware Version >= 1.20.0 < 1.20.1
   Tp-linkOmada Sg3210x-m2 Version-
Tp-linkOmada Sg3218xp-m2 Firmware Version >= 1.0.0 < 1.0.19
   Tp-linkOmada Sg3218xp-m2 Version-
Tp-linkOmada Sg3428 Firmware Version >= 2.30.0 < 2.30.16
   Tp-linkOmada Sg3428 Version-
Tp-linkOmada Sg3428 Firmware Version >= 2.40.0 < 2.40.1
   Tp-linkOmada Sg3428 Version-
Tp-linkOmada Sg3428mp Firmware Version >= 6.20.0 < 6.20.20
   Tp-linkOmada Sg3428mp Version-
Tp-linkOmada Sg3428mp Firmware Version >= 6.30.0 < 6.30.1
   Tp-linkOmada Sg3428mp Version-
Tp-linkOmada Sg3428x Firmware Version >= 1.30.0 < 1.30.17
   Tp-linkOmada Sg3428x Version-
Tp-linkOmada Sg3428x Firmware Version >= 1.40.0 < 1.40.1
   Tp-linkOmada Sg3428x Version-
Tp-linkOmada Sg3428xf Firmware Version >= 1.20.0 < 1.20.16
   Tp-linkOmada Sg3428xf Version-
Tp-linkOmada Sg3428xf Firmware Version >= 1.30.0 < 1.30.1
   Tp-linkOmada Sg3428xf Version-
Tp-linkOmada Sg3428x-m2 Firmware Version >= 1.20.0 < 1.20.18
   Tp-linkOmada Sg3428x-m2 Version-
Tp-linkOmada Sg3428xmp Firmware Version >= 3.20.0 < 3.20.21
   Tp-linkOmada Sg3428xmp Version-
Tp-linkOmada Sg3428xmp Firmware Version >= 3.30.0 < 3.30.1
   Tp-linkOmada Sg3428xmp Version-
Tp-linkOmada Sg3428xmpp Firmware Version >= 1.0.0 < 1.0.16
   Tp-linkOmada Sg3428xmpp Version-
Tp-linkOmada Sg3428xmpp Firmware Version >= 1.20.0 < 1.20.1
   Tp-linkOmada Sg3428xmpp Version-
Tp-linkOmada Sg3428xpp-m2 Firmware Version >= 1.20.0 < 1.20.19
   Tp-linkOmada Sg3428xpp-m2 Version-
Tp-linkOmada Sg3452 Firmware Version >= 1.20.0 < 1.20.17
   Tp-linkOmada Sg3452 Version-
Tp-linkOmada Sg3452 Firmware Version >= 1.30.0 < 1.30.1
   Tp-linkOmada Sg3452 Version-
Tp-linkOmada Sg3452p Firmware Version >= 3.30.0 < 3.30.17
   Tp-linkOmada Sg3452p Version-
Tp-linkOmada Sg3452p Firmware Version >= 3.40.0 < 3.40.1
   Tp-linkOmada Sg3452p Version-
Tp-linkOmada Sg3452x Firmware Version >= 1.20.0 < 1.20.18
   Tp-linkOmada Sg3452x Version-
Tp-linkOmada Sg3452x Firmware Version >= 1.30.0 < 1.30.1
   Tp-linkOmada Sg3452x Version-
Tp-linkOmada Sg3452xmpp Firmware Version >= 1.0.0 < 1.0.15
   Tp-linkOmada Sg3452xmpp Version-
Tp-linkOmada Sg3452xp Firmware Version >= 2.20.0 < 2.20.20
   Tp-linkOmada Sg3452xp Version-
Tp-linkOmada Sg3452xp Firmware Version >= 2.30.0 < 2.30.1
   Tp-linkOmada Sg3452xp Version-
Tp-linkOmada Sl2428p Firmware Version >= 6.20.0 < 6.20.18
   Tp-linkOmada Sl2428p Version-
Tp-linkOmada Sx3008f Firmware Version >= 1.20.0 < 1.20.12
   Tp-linkOmada Sx3008f Version-
Tp-linkOmada Sx3016f Firmware Version >= 1.20.0 < 1.20.16
   Tp-linkOmada Sx3016f Version-
Tp-linkOmada Sx3016f Firmware Version >= 1.30.0 < 1.30.1
   Tp-linkOmada Sx3016f Version-
Tp-linkOmada Sx3032f Firmware Version >= 1.0.0 < 1.0.15
   Tp-linkOmada Sx3032f Version-
Tp-linkOmada Sx3206hpp Firmware Version >= 1.20.0 < 1.20.12
   Tp-linkOmada Sx3206hpp Version-
Tp-linkOmada Sx3832 Firmware Version >= 1.0.0 < 1.0.12
   Tp-linkOmada Sx3832 Version-
Tp-linkOmada Sx3832mpp Firmware Version >= 1.0.0 < 1.0.11
   Tp-linkOmada Sx3832mpp Version-
Tp-linkOmada Tl-sg2428p Firmware Version >= 4.0.0 < 4.0.26
   Tp-linkOmada Tl-sg2428p Version-
Tp-linkOmada Tl-sg3428mp Firmware Version >= 5.0.0 < 5.0.25
   Tp-linkOmada Tl-sg3428mp Version-
Tp-linkOmada Tl-sg3452p Firmware Version >= 3.0.0 < 3.0.22
   Tp-linkOmada Tl-sg3452p Version-
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.14% 0.33
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
f23511db-6c3e-4e32-a477-6aa17d310630 7.7 0 0
CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.