CVE-2017-8076: Weak Encryption
On the TP-Link TL-SG108E 1.0, admin network communications are RC4 encoded, even though RC4 is deprecated. This affects the 1.1.2 Build 20141017 Rel.50749 firmware.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8076?
CVE-2017-8076 is considered to have a medium severity due to the use of the deprecated RC4 encryption in admin communications.
How do I fix CVE-2017-8076?
To fix CVE-2017-8076, you should upgrade the TP-Link TL-SG108E to a version of firmware that does not use RC4 for encryption.
What devices are affected by CVE-2017-8076?
CVE-2017-8076 affects the TP-Link TL-SG108E with firmware version 1.1.2 Build 20141017 Rel.50749.
Is all communication affected by CVE-2017-8076?
Only the admin network communications are affected by CVE-2017-8076 due to the use of RC4 encoding.
What is the impact of CVE-2017-8076 on security?
The impact of CVE-2017-8076 on security includes the potential exposure of sensitive admin credentials because of the weak encryption method.