CVE-2020-15054

Severity CVSS v4.0:
Pending analysis
Type:
CWE-319 Cleartext Transmission of Sensitive Information
Publication date:
07/08/2020
Last modified:
21/07/2021

Description

TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 allow an attacker on the same network to elevate privileges because the administrative password can be discovered by sniffing unencrypted UDP traffic.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tp-link:tl-ps310u_firmware:*:*:*:*:*:*:*:* 2.079.000.t0210 (excluding)
cpe:2.3:h:tp-link:tl-ps310u:-:*:*:*:*:*:*:*