Vulnerability in TP-Link Devices Allows for Eavesdropping and Data Access

CVE-2024-46548
Currently unrated 🤨

Key Information

Vendor
TP-Link
Vendor
CVE Published:
30 September 2024

Summary

TP-Link Tapo P125M and Kasa KP125M v1.0.3 was discovered to improperly validate certificates, allowing attackers to eavesdrop on communications and access sensitive information via a man-in-the-middle attack.

Timeline

  • Vulnerability published.

Collectors

NVD Database
.