CVE-2024-46548
Severity CVSS v4.0:
Pending analysis
Type:
CWE-200
Information Leak / Disclosure
Publication date:
30/09/2024
Last modified:
04/10/2024
Description
TP-Link Tapo P125M and Kasa KP125M v1.0.3 was discovered to improperly validate certificates, allowing attackers to eavesdrop on communications and access sensitive information via a man-in-the-middle attack.
Impact
Base Score 3.x
6.30
Severity 3.x
MEDIUM



