Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-32vw-wgfh-pxr5

Опубликовано: 03 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7
CVSS3: 8.1

Описание

SSH Hostkey misconfiguration vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows attackers to obtain device credentials through a specially crafted man‑in‑the‑middle (MITM) attack. This could enable unauthorized access if captured credentials are reused.This issue affects Archer AX53 v1.0: through 1.3.1 Build 20241120.

SSH Hostkey misconfiguration vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows attackers to obtain device credentials through a specially crafted man‑in‑the‑middle (MITM) attack. This could enable unauthorized access if captured credentials are reused.This issue affects Archer AX53 v1.0: through 1.3.1 Build 20241120.

EPSS

Процентиль: 38%
0.00465
Низкий

7 High

CVSS4

8.1 High

CVSS3

Дефекты

CWE-322

Связанные уязвимости

CVSS3: 8.1
nvd
7 месяцев назад

SSH Hostkey misconfiguration vulnerability in TP-Link Archer AX53 v1.0 (tmpserver modules) allows attackers to obtain device credentials through a specially crafted man‑in‑the‑middle (MITM) attack. This could enable unauthorized access if captured credentials are reused.This issue affects Archer AX53 v1.0: through 1.3.1 Build 20241120.

CVSS3: 8
fstec
7 месяцев назад

Уязвимость модуля tmpserver микропрограммного обеспечения маршрутизаторов TP-Link Archer AX53, позволяющая нарушителю выполнять атаки типа «человек посередине»

EPSS

Процентиль: 38%
0.00465
Низкий

7 High

CVSS4

8.1 High

CVSS3

Дефекты

CWE-322