What is CVE-2025-30239?
In affected TP-Link Aginet devices, hardcoded cryptographic keys embedded in the firmware are used to protect sensitive configuration data. This flaw may allow an attacker with access to device storage to recover the keys and decrypt the stored data.
Azərbaycanca: TP-Link Aginet cihazlarının firmware-də yerləşdirilmiş sabit şifrələmə açarları (hardcoded cryptographic keys) istifadə olunur. Bu zəiflik cihaz yaddaşına çıxışı olan hücumçuya açarları əldə edib həssas konfiqurasiya məlumatlarını deşifrə etməyə imkan verir.
Related CVEs
link basis: same weakness class CWE-798; shared vendor: TP-Link
FAQ1
What does CVE-2025-30239 allow an attacker to do on TP-Link Aginet devices?
This flaw may allow an attacker with access to device storage to recover the hardcoded cryptographic keys embedded in the firmware and decrypt sensitive configuration data.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.