CNNVD-202601-4893 Information

CNNVD ID

CNNVD-202601-4893

CVE-2025-13399

  • CNNVD Published: 2026-01-29

Description (Chinese)

TP-Link VX800v是中国普联(TP-Link)公司的一款VoIP网关。 TP-Link VX800v 1.0版本存在安全漏洞,该漏洞源于Web接口应用层加密存在弱点,可能导致相邻攻击者暴力破解弱AES密钥并解密被拦截流量。

Description (English)

TP-Link VX800v is a VoIP gateway for PURC (TP-Link). The security loophole in version TP-Link VX800v 1.0 stems from weaknesses in encryption in the Web interface application layer, which may lead to the violent breaking of weak AES keys and the decryption of intercepted traffic by adjacent attackers.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

普联

Published

2026-01-29

Last Modified

2026-02-24

References

https://www.tp-link.com/de/support/download/vx800v/#Firmware https://www.tp-link.com/us/support/faq/4930/ https://access.redhat.com/security/cve/cve-2025-13399

Patch

https://www.tp-link.com/de/support/download/vx800v/#Firmware

Share on: