CNNVD-202601-4894 Information

CNNVD ID

CNNVD-202601-4894

CVE-2025-15541

  • CNNVD Published: 2026-01-29

Description (Chinese)

TP-Link VX800v是中国普联(TP-Link)公司的一款VoIP网关。 TP-Link VX800v 1.0版本存在安全漏洞,该漏洞源于SFTP服务链接解析不当,可能导致经过身份验证的相邻攻击者使用特制符号链接访问系统文件。

Description (English)

TP-Link VX800v is a VoIP gateway for PURC (TP-Link). TP-Link VX800v 1.0 contains a security loophole, which stems from the misdialysis of the SFTP service link, which may lead to the use of a unique symbol to access the system file by an identified neighbor.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

普联

Published

2026-01-29

Last Modified

2026-02-24

References

https://www.tp-link.com/de/support/download/vx800v/#Firmware https://www.tp-link.com/us/support/faq/4930/ https://access.redhat.com/security/cve/cve-2025-15541

Patch

https://www.tp-link.com/de/support/download/vx800v/#Firmware

Share on: