CVE-2017-8074

Severity CVSS v4.0:
Pending analysis
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
23/04/2017
Last modified:
20/04/2025

Description

On the TP-Link TL-SG108E 1.0, a remote attacker could retrieve credentials from "SEND data" log lines where passwords are encoded in hexadecimal. This affects the 1.1.2 Build 20141017 Rel.50749 firmware.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tp-link:tl-sg108e_firmware:1.1.2:*:*:*:*:*:*:*
cpe:2.3:h:tp-link:tl-sg108e:-:*:*:*:*:*:*:*