Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-30238— Privilege Escalation via Improper Authorization in User Management in multiple TP-Link Aginet Devices

CVSS 8.6 · High EPSS 0.14% · P3
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-30238

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Privilege Escalation via Improper Authorization in User Management in multiple TP-Link Aginet Devices
Source: CVE Program / CVE List V5
Vulnerability Description
In affected TP-Link Aginet devices, insufficient authorization validation allows authenticated low-privileged users to execute higher-privileged operations. An attacker may perform administrative actions such as creating privileged accounts or modifying critical configuration settings.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Source: CVE Program / CVE List V5
Vulnerability Type
授权机制不正确
Source: CVE Program / CVE List V5

Affected Products

VendorProductAffected VersionsCPESubscribe
TP-Link Systems Inc.HB810(US2) V1.0/1.6/2.0/2.6 0 ~ 0.9.0 3.2.2 v6095.0 Build 260717 Rel.67188n -
TP-Link Systems Inc.HB810(EU1) V2.0 0 ~ 0.10.0 3.2.2 v6095.0 Build 260306 Rel.47567n -
TP-Link Systems Inc.HB710(US2) V1.6/1.0 0 ~ 0.3.0 3.0.0 v60be.0 Build 251128 Rel.43956n -
TP-Link Systems Inc.HB710(EU1) 1.0 0 ~ 0.3.0 3.0.0 v60be.0 Build 251128 Rel.43956n -
TP-Link Systems Inc.HB610(US2) V2.6/2.0 0 ~ 0.6.0 3.0.0 v60af.0 Build 251204 Rel.20362n -
TP-Link Systems Inc.HB610(EU1) 0 ~ 0.6.0 3.0.0 v60af.0 Build 251204 Rel.20362n -
TP-Link Systems Inc.HB610(CA) V2.0 0 ~ 0.6.0 3.0.0 v60af.0 Build 251216 Rel.46954n -
TP-Link Systems Inc.HB410( EU1) 1.0 0 ~ 0.3.0 3.0.0 v60bf.0 Build 250901 Rel.45574n -
TP-Link Systems Inc.HB210(US2) 1.0 0 ~ 0.2.0 3.0.0 v60f9.0 Build 250826 Rel.47715n -
TP-Link Systems Inc.HB210(EU1) 1.0 0 ~ 0.2.0 3.0.0 v60f9.0 Build 250826 Rel.47715n -
TP-Link Systems Inc.HB210 Pro(EU1)1.0 0 ~ 0.5.0 3.0.0 v60d5.0 Build 250922 Rel.13742n -
TP-Link Systems Inc.HB210 Pro(US2)1.0/1.6 0 ~ 0.8.0 3.0.0 v60d5.0 Build 260318 Rel.78363n -
TP-Link Systems Inc.HX510(US1) V2.0 0 ~ 0.14.0 3.0.0 v6065.0 Build 250822 Rel.81150n -
TP-Link Systems Inc.HX510(EU1) V2.0 0 ~ 0.14.0 3.0.0 v6065.0 Build 250822 Rel.81150n -
TP-Link Systems Inc.HX510(CA) V1.0/2.0 0 ~ 0.14.0 3.0.0 v6065.0 Build 250822 Rel.81150n -
TP-Link Systems Inc.HX510(AU) V1.0/2.0 0 ~ 0.14.0 3.0.0 v6065.0 Build 250822 Rel.81150n -
TP-Link Systems Inc.HX510(US2) 2.6 0 ~ 0.17.0 3.2.2 v6065.0 Build 260722 Rel.10662n -
TP-Link Systems Inc.HX710(EU1) V1.0 0 ~ 0.5.0 3.1.10 v6075.0 Build 260511 Rel.47847n -
TP-Link Systems Inc.HX710 Pro(EU1) V1.0 0 ~ 0.4.0 3.1.10 v6082.0 Build 260204 Rel.49460n -
TP-Link Systems Inc.HX220(US1) V1.0/1.0 0 ~ 0.21.0 2.0.0 v605f.0 Build 250306 Rel.9224n -
TP-Link Systems Inc.HX220(EU1) V1.0 0 ~ 0.21.0 2.0.0 v605f.0 Build 250306 Rel.9224n -
TP-Link Systems Inc.HX220(CA) V1.0 0 ~ 0.21.0 2.0.0 v605f.0 Build 250306 Rel.9224n -
TP-Link Systems Inc.HX220(AU) V1.0 0 ~ 0.21.0 2.0.0 v605f.0 Build 250306 Rel.9224n -
TP-Link Systems Inc.HX141(EU1) V1.0 0 ~ 1.2.0 3.1.0 v609d.0 Build 260128 Rel.29711n -
TP-Link Systems Inc.HC220-G5(US1) V1.0/1.6 0 ~ 0.18.0 2.0.0 v605e.0 Build 250827 Rel.37904n -
TP-Link Systems Inc.HC220-G5(EU1) V1.20/1.0 0 ~ 0.18.0 2.0.0 v605e.0 Build 250827 Rel.37904n -
TP-Link Systems Inc.HC220-G5(BR) V1.30 0 ~ 0.17.0 2.0.0 v605e.0 Build 250618 Rel.19329n -
TP-Link Systems Inc.EB210 Pro(EU1) 1.0 0 ~ 0.2.0 3.0.0 v60f4.0 Build 250807 Rel.58901n -
TP-Link Systems Inc.EB210 Pro(US1) 1.0 0 ~ 0.2.0 3.0.0 v60f4.0 Build 250807 Rel.58901n -
TP-Link Systems Inc.EB810v(EU1) V1.0 0 ~ 0.6.0 3.0.0 v608b.0 Build 250613 Rel.10497n -
TP-Link Systems Inc.EX141(BR) V1.0/1.9 0 ~ 1.8.0 3.1.0 v608a.0 Build 250425 Rel.40905n -
TP-Link Systems Inc.EX141(EU1) V1.0 0 ~ 1.7.0 3.1.0 v608a.0 Build 250418 Rel.8257n -
TP-Link Systems Inc.EX141(US1) V1.0 0 ~ 1.7.0 3.1.0 v608a.0 Build 250418 Rel.8257n -
TP-Link Systems Inc.EX220(BR) V1.0/1.20/1.28/1.29/1.8 0 ~ 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728n -
TP-Link Systems Inc.EX220(BR) V2.0 0 ~ 0.19.0 2.0.0 v609b.0 Build 250814 Rel.49732n -
TP-Link Systems Inc.EX220(EU1) V1.0/1.20 0 ~ 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728n -
TP-Link Systems Inc.EX220(RU) V1.0 0 ~ 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728n -
TP-Link Systems Inc.EX220(US1) V1.0 0 ~ 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728n -
TP-Link Systems Inc.EX222(EU1) V1.0 0 ~ 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728n -
TP-Link Systems Inc.EX222(KR) V1.0 0 ~ 0.20.0 2.0.0 v609b.0 Build 260427 Rel.16915 -
TP-Link Systems Inc.EX222(US1) V1.0 0 ~ 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728n -
TP-Link Systems Inc.EX511(BR) V2.0/2.8/2.9 0 ~ 0.9.0 3.0.0 v607e.0 Build 260520 Rel.33425n -
TP-Link Systems Inc.EX511(EU1) V2.0 0 ~ 0.9.0 3.0.0 v607e.0 Build 260520 Rel.33425n -
TP-Link Systems Inc.EX511(US1) V2.0 0 ~ 0.8.0 3.0.0 v607e.0 Build 260424 Rel.27419n -
TP-Link Systems Inc.EX520(US1) V1.0 0 ~ 0.7.0 3.0.0 v60b4.0 Build 251229 Rel.84306n -
TP-Link Systems Inc.EX520v(EU1)1.0 0 ~ 0.1.0 3.0.0 v60ee.0 Build 250310 Rel.55637n -
TP-Link Systems Inc.EX521(US1) V1.0 0 ~ 0.3.0 3.0.0 v60e3.0 Build 250925 Rel.66797n -
TP-Link Systems Inc.EX820v(EU1) V1.0 0 ~ 0.4.0 3.1.9 v6087.0 Build 250928 Rel.59674n -
TP-Link Systems Inc.EX920(US2) V1.6/V1.0 0 ~ 0.8.0 3.2.2 v6080.0 Build 260309 Rel.54790n -
TP-Link Systems Inc.XC220-G3v(EU1) V2.30 0 ~ 1.16.0 0.8.0 v6062.0 Build 250817 Rel.23310n -
TP-Link Systems Inc.XC220-G3v(US1) V2.30 0 ~ 1.16.0 0.8.0 v6062.0 Build 250817 Rel.23310n -
TP-Link Systems Inc.XX530v(BR)v1.0 0 ~ 0.6.0 3.0.0 v6096.0 Build 250416 Rel.26048n -
TP-Link Systems Inc.XX530v(BR)v2.0 0 ~ 0.4.0 3.1.10 v60dc.0 Build 250520 Rel.69748n -
TP-Link Systems Inc.XX530v(US1) 0 ~ 0.6.0 3.0.0 v6096.0 Build 250416 Rel.26048n -
TP-Link Systems Inc.XX530v(EU1) 0 ~ 0.3.0 3.1.10 v6107.0 Build 250425 Rel.71973n -
TP-Link Systems Inc.XX230v(BR) V1.0 0 ~ 0.16.0 3.0.0 v6066.0 Build 250423 Rel.43799n -
TP-Link Systems Inc.VX800v(DE) V1.0 0 ~ 800.0.16 -
TP-Link Systems Inc.VX1800v(EU1) V1.0 0 ~ 0.14.0 2.0.0 v6092.0 Build 250417 Rel.24761n -
TP-Link Systems Inc.VX420-G2h(AU) V3.0 0 ~ 0.2.0 2.0.0 v60df.0 Build 250427 Rel.38233n -

II. Public POCs for CVE-2025-30238

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-30238

登录查看更多情报信息。

Vendor Advisories for CVE-2025-30238 (1)

Same Patch Batch · TP-Link Systems Inc. · 2026-08-10 · 6 CVEs total

CVE-2025-302378.7 HIGHAuthentication Bypass via Broken Access Control in Web Server in Multiple TP-Link Aginet D
CVE-2025-302418.6 HIGHOS Command Injection in Web Interface in Multiple TP-Link Aginet Devices
CVE-2025-302398.5 HIGHSensitive Data Exposure due to Hardcoded Cryptographic Keys in Multiple TP-Link Aginet Dev
CVE-2026-123396.9 MEDIUMAuthenticated Arbitrary File Write Vulnerability in multiple devices
CVE-2025-302405.1 MEDIUMArbitrary File Read via Improper Symlink Handling in USB HTTPS Access Path in multiple TP-

IV. Related Vulnerabilities

V. Comments for CVE-2025-30238

No comments yet


Leave a comment