{"dataType": "CVE_RECORD", "dataVersion": "5.2", "cveMetadata": {"cveId": "CVE-2026-1668", "assignerOrgId": "f23511db-6c3e-4e32-a477-6aa17d310630", "state": "PUBLISHED", "assignerShortName": "TPLink", "dateReserved": "2026-01-29T21:44:58.903Z", "datePublished": "2026-03-13T16:53:23.486Z", "dateUpdated": "2026-03-13T18:09:29.873Z"}, "containers": {"cna": {"providerMetadata": {"orgId": "f23511db-6c3e-4e32-a477-6aa17d310630", "shortName": "TPLink", "dateUpdated": "2026-03-13T16:53:23.486Z"}, "title": "Input Validation Vulnerability on Multiple Omada Switches", "problemTypes": [{"descriptions": [{"lang": "en", "cweId": "CWE-20", "description": "CWE-20 Improper Input Validation", "type": "CWE"}]}], "impacts": [{"capecId": "CAPEC-787", "descriptions": [{"lang": "en", "value": "CAPEC-787 Out-of-Bounds Write"}]}], "affected": [{"vendor": "TP-Link Systems Inc.", "product": "SG2008P 3.2x", "platforms": ["SG2008P(UN) hardware version 3.20", "SG2008P(UN) hardware version 3.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "3.20.17 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2008P 3.3x", "platforms": ["SG2008P(UN) hardware version 3.30", "SG2008P(UN) hardware version 3.36", "SG2008P(EU) hardware version 3.36"], "versions": [{"status": "affected", "version": "0", "lessThan": "3.30.1 Build 20260127 Rel.32017", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SX3016F 1.3x", "platforms": ["SX3016F(UN) hardware version 1.30", "SX3016F(UN) hardware version 1.36", "SX3016F(IN) hardware version 1.38"], "packageName": "SX3016F(UN)/(IN) hardware 1.30/1.36/1.38", "versions": [{"status": "affected", "version": "0", "lessThan": "1.30.1 Build 20260129 Rel.8831", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SX3016F 1.2x", "platforms": ["SX3016F(UN) hardware version 1.20", "SX3016F(UN) hardware version 1.26", "SX3016F(IN) hardware version 1.28"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.16 Build 20260121 Rel.57953", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428 2.4x", "platforms": ["SG3428(UN) 2.40", "SG3428(UN) 2.46", "SG3428(BR) 2.46", "SG3428(IN) 2.48"], "versions": [{"status": "affected", "version": "0", "lessThan": "2.40.1 Build 20260127 Rel.39545", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428XMP 3.3x", "platforms": ["SG3428XMP(UN) 3.30", "SG3428XMP(UN) 3.36", "SG3428XMP(EU) 3.36", "SG3428XMP(IN) 3.38"], "versions": [{"status": "affected", "version": "0", "lessThan": "3.30.1 Build 20260127 Rel.39545", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428X 1.4x", "platforms": ["SG3428X(UN) 1.40", "SG3428X(UN) 1.46", "SG3428X(EU) 1.46", "SG3428X(IN) 1.48"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.40.1 Build 20260127 Rel.39545", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428XF 1.3x", "platforms": ["SG3428XF(UN) 1.30", "SG3428XF(UN) 1.36", "SG3428XF(IN) 1.38"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.30.1 Build 20260127 Rel.39545", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3452P 3.4x", "platforms": ["SG3452P(UN) 3.40", "SG3452P(UN) 3.46", "SG3452P(IN) 3.48"], "versions": [{"status": "affected", "version": "0", "lessThan": "3.40.1 Build 20260128 Rel.7041", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428MP 6.3x", "platforms": ["SG3428MP(UN) 6.30", "SG3428MP(UN) 6.36", "SG3428MP(BR) 6.36", "SG3428MP(IN) 6.38", "SG3428MP(EU) 6.36"], "versions": [{"status": "affected", "version": "0", "lessThan": "6.30.1 Build 20260127 Rel.39545", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2218P 2.2x", "platforms": ["SG2218P(UN) 2.20", "SG2218P(UN) 2.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "2.20.2 Build 20260127 Rel.32017", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2016P 1.3x", "platforms": ["SG2016P(UN) 1.30", "SG2016P(UN) 1.36"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.30.1 Build 20260127 Rel.32017", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3452XP 2.3x", "platforms": ["SG3452XP(UN) 2.30", "SG3452XP(UN) 2.36", "SG3452XP(IN) 2.38"], "versions": [{"status": "affected", "version": "0", "lessThan": "2.30.1 Build 20260128 Rel.8721", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428XMPP 1.2x", "platforms": ["SG3428XMPP(UN) 1.20", "SG3428XMPP(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.1 Build 20260127 Rel.39545", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3452X 1.3x", "platforms": ["SG3452X(UN) 1.30", "SG3452X(UN) 1.36", "SG3452X(IN) 1.38"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.30.1 Build 20260128 Rel.8721", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2008 4.3x", "platforms": ["SG2008(UN) 4.30", "SG2008(UN) 4.36"], "versions": [{"status": "affected", "version": "0", "lessThan": "4.30.1 Build 20260127 Rel.32017", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3210 3.3x", "platforms": ["SG3210(UN) 3.30", "SG3210(UN) 3.36", "SG3210(IN) 3.38"], "versions": [{"status": "affected", "version": "0", "lessThan": "3.30.1 Build 20260206 Rel.33103", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2210MP 5.2x", "platforms": ["SG2210MP(UN) 5.20", "SG2210MP(IN) 5.28", "SG2210MP(EU) 5.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "5.20.1 Build 20260127 Rel.32017", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2210P 5.3x", "platforms": ["SG2210P(UN) 5.30", "SG2210P(UN) 5.36", "SG2210P(BR) 5.36", "SG2210P(IN) 5.38", "SG2210P(EU) 5.36"], "versions": [{"status": "affected", "version": "0", "lessThan": "5.30.1 Build 20260127 Rel.32017", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2218 1.3x", "platforms": ["SG2218(UN) 1.30", "SG2218(UN) 1.36"], "packageName": "SG2218(UN) 1.30,SG2218(UN) 1.36", "versions": [{"status": "affected", "version": "0", "lessThan": "1.30.1 Build 20260127 Rel.32017", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3452 1.3x", "platforms": ["SG3452(UN) 1.30", "SG3452(UN) 1.36", "SG3452(IN) 1.38"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.30.1 Build 20260128 Rel.7041", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3210X-M2 1.2x", "platforms": ["SG3210X-M2(UN) 1.20", "SG3210X-M2(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.1 Build 20260129 Rel.13605", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2210XMP-M2 1.x", "platforms": ["SG2210XMP-M2(UN) 1.0", "SG2210XMP-M2(UN) 1.6"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.19 Build 20260121 Rel.53314", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2008 4.2x", "platforms": ["SG2008(UN) 4.20", "SG2008(UN) 4.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "4.20.17 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2218P 1.2x", "platforms": ["SG2218P(UN) 1.20", "SG2218P(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.17 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3210 3.2x", "platforms": ["SG3210(UN) 3.20", "SG3210(IN) 3.28", "SG3210(UN) 3.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "3.20.17 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428X-M2 1.2x", "platforms": ["SG3428X-M2(UN) 1.20", "SG3428X-M2(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.18 Build 20260121 Rel.54271", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SX3832MPP 1.x", "platforms": ["SX3832MPP(UN) 1.0", "SX3832MPP(UN) 1.6"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.11 Build 20260121 Rel.56907", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2218 1.2x", "platforms": ["SG2218(UN) 1.20", "SG2218(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.17 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SX3832 1.x", "platforms": ["SX3832(UN) 1.0", "SX3832(UN) 1.6"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.12 Build 20260121 Rel.56907", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2428LP 1.x", "platforms": ["SG2428LP(UN) 1.0", "SG2428LP(UN) 1.6", "SG2428LP(IN) 1.8"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.15 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SL2428P 6.2x", "platforms": ["SL2428P(UN) 6.20", "SL2428P(UN) 6.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "6.20.18 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3218XP-M2 1.x", "platforms": ["SG3218XP-M2(UN) 1.0", "SG3218XP-M2(UN) 1.6"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.19 Build 20260121 Rel.53314", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3210XHP-M2 3.x", "platforms": ["SG3210XHP-M2(UN) 3.0", "SG3210XHP-M2(IN)3.8", "SG3210XHP-M2(UN) 3.6"], "versions": [{"status": "affected", "version": "0", "lessThan": "3.0.21 Build 20260121 Rel.53314", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2218P 2.x", "platforms": ["SG2218P(UN) 2.0", "SG2218P(UN) 2.6"], "versions": [{"status": "affected", "version": "0", "lessThan": "2.0.14 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3210X-M2 1.x", "platforms": ["SG3210X-M2(UN) 1.0", "SG3210X-M2(UN) 1.6"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.19 Build 20260121 Rel.53314", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2428P 5.3x", "platforms": ["SG2428P(UN) 5.30", "SG2428P(UN) 5.32", "SG2428P(IN) 5.33"], "versions": [{"status": "affected", "version": "0", "lessThan": "5.30.16 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2210MP 4.2x", "platforms": ["SG2210MP(UN) 4.20", "SG2210MP(UN) 4.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "4.20.18 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3452P 3.3x", "platforms": ["SG3452P(UN) 3.30", "SG3452P(IN) 3.33", "SG3452P(UN) 3.32"], "versions": [{"status": "affected", "version": "0", "lessThan": "3.30.17 Build 20260121 Rel.54132", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3452 1.2x", "platforms": ["SG3452(UN) 1.20", "SG3452(IN) 1.28", "SG3452(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.17 Build 20260121 Rel.54132", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2452LP 1.x", "platforms": ["SG2452LP(UN) 1.0", "SG2452LP(UN) 1.6", "SG2452LP(IN) 1.8"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.13 Build 20260121 Rel.54132", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SX3032F 1.x", "platforms": ["SX3032F(UN) 1.0", "SX3032F(UN) 1.6"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.15 Build 20260121 Rel.56907", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3452X 1.2x", "platforms": ["SG3452X(UN) 1.20", "SG3452X(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.18 Build 20260121 Rel.55833", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3452XMPP 1.x", "platforms": ["SG3452XMPP(UN) 1.0", "SG3452XMPP(UN) 1.6", "SG3452XMPP(IN) 1.8"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.15 Build 20260121 Rel.55833", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428XPP-M2 1.2x", "platforms": ["SG3428XPP-M2(UN) 1.20", "SG3428XPP-M2(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.19 Build 20260121 Rel.54271", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "TL-SG3452P 3.0", "platforms": ["TL-SG3452P(UN) 3.0"], "versions": [{"status": "affected", "version": "0", "lessThan": "3.0.22 Build 20260121 Rel.54132", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2428P 5.2x", "platforms": ["SG2428P(UN) 5.20", "SG2428P(UN) 5.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "5.20.20 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2210MP 5.x", "platforms": ["SG2210MP(UN) 5.0", "SG2210MP(IN) 5.8"], "versions": [{"status": "affected", "version": "0", "lessThan": "5.0.15 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2005P-PD 1.x", "platforms": ["SG2005P-PD(UN) 1.0", "SG2005P-PD(UN) 1.6"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.19 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2016P 1.2x", "platforms": ["SG2016P(UN) 1.20", "SG2016P(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.17 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3452XP 2.2x", "platforms": ["SG3452XP(UN) 2.20", "SG3452XP(UN) 2.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "2.20.20 Build 20260121 Rel.55833", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428XMP 3.2x", "platforms": ["SG3428XMP(UN) 3.20", "SG3428XMP(IN) 3.28", "SG3428XMP(UN) 3.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "3.20.21 Build 20260113 Rel.67732", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428X 1.3x", "platforms": ["SG3428X(UN) 1.30", "SG3428X(IN) 1.33", "SG3428X(UN) 1.32"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.30.17 Build 20260113 Rel.67732", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428XF 1.2x", "platforms": ["SG3428XF(UN) 1.20", "SG3428XF(IN) 1.28", "SG3428XF(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "1.20.16 Build 20260113 Rel.67732", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428MP 6.2x", "platforms": ["SG3428MP(UN) 6.20", "SG3428MP(IN) 6.28", "SG3428MP(UN) 6.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "6.20.20 Build 20260113 Rel.67732", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "TL-SG3428MP 5.x", "platforms": ["TL-SG3428MP(UN) 5.0", "TL-SG3428MP(UN) 5.6", "TL-SG3428MP(UN) 5.20", "TL-SG3428MP(UN) 5.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "5.0.25 Build 20260113 Rel.67732", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428 2.3x", "platforms": ["SG3428(UN) 2.30", "SG3428(IN) 2.33", "SG3428(UN) 2.32"], "versions": [{"status": "affected", "version": "0", "lessThan": "2.30.16 Build 20260113 Rel.67732", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG3428XMPP 1.x", "platforms": ["SG3428XMPP(UN) 1.0", "SG3428XMPP(IN) 1.8", "SG3428XMPP(UN) 1.6"], "packageName": "SG3428XMPP(UN) 1.0,SG3428XMPP(IN) 1.8,SG3428XMPP(UN) 1.6", "versions": [{"status": "affected", "version": "0", "lessThan": "1.0.16 Build 20260113 Rel.67732", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "TL-SG2428P 4.x", "platforms": ["TL-SG2428P(UN) 4.0", "TL-SG2428P(UN) 4.6"], "versions": [{"status": "affected", "version": "0", "lessThan": "4.0.26 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SG2210P 5.2x", "platforms": ["SG2210P(UN) 5.20", "SG2210P(IN) 5.28", "SG2210P(UN) 5.26"], "versions": [{"status": "affected", "version": "0", "lessThan": "5.20.18 Build 20260121 Rel.53429", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SX3008F 1.2x", "platforms": ["SX3008F(UN) 1.20", "SX3008F(IN)1.28", "SX3008F(UN) 1.26"], "versions": [{"status": "affected", "version": "0", "versionType": "custom"}], "defaultStatus": "unaffected"}, {"vendor": "TP-Link Systems Inc.", "product": "SX3206HPP 1.20", "platforms": ["SX3206HPP(UN) 1.20"], "versions": [{"status": "affected", "version": "0", "versionType": "custom"}], "defaultStatus": "unaffected"}], "descriptions": [{"lang": "en", "value": "The web interface on multiple Omada switches does not adequately validate certain external inputs, which may lead to out-of-bound memory access when processing crafted requests. Under specific conditions, this flaw may result in unintended command execution.<br>An unauthenticated attacker with network access to the affected interface may cause memory corruption, service instability, or information disclosure. Successful exploitation may allow remote code execution or denial-of-service.", "supportingMedia": [{"type": "text/html", "base64": false, "value": "The web interface on multiple Omada switches does not adequately validate certain external inputs, which may lead to out-of-bound memory access when processing crafted requests. Under specific conditions, this flaw may result in unintended command execution.<br>An unauthenticated attacker with network access to the affected interface may cause memory corruption, service instability, or information disclosure. Successful exploitation may allow remote code execution or denial-of-service."}]}], "references": [{"url": "https://support.omadanetworks.com/us/product/", "tags": ["patch"]}, {"url": "https://support.omadanetworks.com/au/download/firmware/", "tags": ["patch"]}, {"url": "https://support.omadanetworks.com/en/download/firmware/", "tags": ["patch"]}, {"url": "https://support.omadanetworks.com/us/document/118794/", "tags": ["vendor-advisory"]}], "metrics": [{"format": "CVSS", "scenarios": [{"lang": "en", "value": "GENERAL"}], "cvssV4_0": {"attackVector": "ADJACENT", "attackComplexity": "HIGH", "attackRequirements": "NONE", "privilegesRequired": "NONE", "userInteraction": "NONE", "vulnConfidentialityImpact": "HIGH", "subConfidentialityImpact": "NONE", "vulnIntegrityImpact": "HIGH", "subIntegrityImpact": "NONE", "vulnAvailabilityImpact": "HIGH", "subAvailabilityImpact": "NONE", "exploitMaturity": "NOT_DEFINED", "Safety": "NOT_DEFINED", "Automatable": "NOT_DEFINED", "Recovery": "NOT_DEFINED", "valueDensity": "NOT_DEFINED", "vulnerabilityResponseEffort": "NOT_DEFINED", "providerUrgency": "NOT_DEFINED", "version": "4.0", "baseSeverity": "HIGH", "baseScore": 7.7, "vectorString": "CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N"}}], "credits": [{"lang": "en", "value": "tangrs", "type": "finder"}], "source": {"discovery": "INTERNAL"}, "x_generator": {"engine": "Vulnogram 0.5.0"}}, "adp": [{"metrics": [{"other": {"type": "ssvc", "content": {"timestamp": "2026-03-13T18:09:19.359038Z", "id": "CVE-2026-1668", "options": [{"Exploitation": "none"}, {"Automatable": "no"}, {"Technical Impact": "total"}], "role": "CISA Coordinator", "version": "2.0.3"}}}], "title": "CISA ADP Vulnrichment", "providerMetadata": {"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0", "shortName": "CISA-ADP", "dateUpdated": "2026-03-13T18:09:29.873Z"}}]}}