Back

HIGH

Sensitive Data Exposure due to Hardcoded Cryptographic Keys in Multiple TP-Link Aginet Devices

Published Aug 10, 2026

Description

In affected TP-Link Aginet devices, use of hardcoded cryptographic keys embedded in the firmware to protect sensitive configuration data may allow an attacker who has access to device storage to recover the keys and decrypt stored data.

Successful exploitation may allow access to decrypted sensitive configuration data, including credentials and service-related information.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner TPLink
Published Aug 10, 2026
Updated Aug 11, 2026
Reserved Mar 19, 2025

CISA Vulnrichment

Updated Aug 11, 2026

NVD

Status Awaiting Analysis
Modified Aug 18, 2026

Red Hat

No data

ENISA EUVD

Assigner TPLink
Published Aug 10, 2026
Updated Aug 11, 2026

GitHub

No data