TP-Link ER605W(US) v2.0 Firmware Update Release Notes
Version Information
Adapted Model: ER605W(US) v2.0.
Minimum FW Version for Update: 2.0.1 Build 20250603 Rel.41429 and above. For downloading of any firmware version, please refer to the Omada Download Center.
Fully adapted to Omada Controller V5.15.24 and Omada APP V4.24.
This is a transitional firmware for RED certification compliance which is not complied to RED certification. To fully comply to RED certification, it is recommended to upgrade to version 2.0.3 afterwards.
Once upgraded to version 2.0.2, you will not be able to downgrade to previous versions. Contact Omada technical support if downgrade is required.
Modification
-
RED certification - address four findings:
- Enforce strong passwords for web login.
- Replace software signing algorithm.
- Disable production-test services in factory mode.
- Log any change to privacy assets stored on the device.
-
First-round security feedback - resolve two issues:
- Injection flaw in DNS proxy_security.
- Injection flaw in sysauth.
-
Second-round security feedback:
- Injection flaw in WireGuard VPN.
- Remove hidden root-SSH capability in CLI_server binary.
- Eliminate legacy ecsp v1 code.
- Add hash validation for device-controller exchanges.
- Prevent TLS hijacking via local-controller certificate.
- Do not pre-fill default Wi-Fi passphrase “wpapass1” in SSID configuration.