漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Use of weak cryptographic key in TP-Link Archer C7
Vulnerability Description
Inadequate Encryption Strength vulnerability in TP-Link Archer C7 v5 and v5.8 (uhttpd modules) allows Password Recovery Exploitation. The web interface encrypts the admin password client-side using RSA-1024 before sending it to the router during login. An adjacent attacker with the ability to intercept network traffic could potentially perform a brute-force or factorization attack against the 1024-bit RSA key to recover the plaintext administrator password, leading to unauthorized access and compromise of the device configuration. This issue affects Archer C7: through Build 20220715.
CVSS Information
N/A
Vulnerability Type
不充分的加密强度
Vulnerability Title
TP-LINK Archer C7 安全漏洞
Vulnerability Description
TP-LINK Archer C7是中国普联(TP-LINK)公司的一款无线路由器。 TP-LINK Archer C7 Build 20220715及之前版本存在安全漏洞,该漏洞源于加密强度不足,可能导致密码恢复攻击。
CVSS Information
N/A
Vulnerability Type
N/A