First published: Tue Jan 09 2024(Updated: )
TP-Link Tapo APK up to v2.12.703 uses hardcoded credentials for access to the login panel.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
TP-Link Tapo | <2.11.44 | |
TP-Link Tapo C200 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-27098 is classified as a critical vulnerability due to the use of hardcoded credentials.
To fix CVE-2023-27098, you should update the Tapo app to version 2.12.703 or later.
CVE-2023-27098 affects TP-Link Tapo APK versions up to 2.11.44.
The impact of CVE-2023-27098 on users is potential unauthorized access to the Tapo app due to hardcoded credentials.
Devices that use TP-Link Tapo APK version 2.12.703 or newer are not vulnerable to CVE-2023-27098.