CVE-2025-30238

Summary

In affected TP-Link Aginet devices, insufficient authorization validation allows authenticated low-privileged users to execute higher-privileged operations.

An attacker may perform administrative actions such as creating privileged accounts or modifying critical configuration settings.

Affected Software

VendorProductVersion RangeStatus
TP-Link Systems Inc.HB810(US2) V1.0/1.6/2.0/2.60 < 0.9.0 3.2.2 v6095.0 Build 260717 Rel.67188naffected
TP-Link Systems Inc.HB810(EU1) V2.00 < 0.10.0 3.2.2 v6095.0 Build 260306 Rel.47567naffected
TP-Link Systems Inc.HB710(US2) V1.6/1.00 < 0.3.0 3.0.0 v60be.0 Build 251128 Rel.43956naffected
TP-Link Systems Inc.HB710(EU1) 1.00 < 0.3.0 3.0.0 v60be.0 Build 251128 Rel.43956naffected
TP-Link Systems Inc.HB610(US2) V2.6/2.00 < 0.6.0 3.0.0 v60af.0 Build 251204 Rel.20362naffected
TP-Link Systems Inc.HB610(EU1)0 < 0.6.0 3.0.0 v60af.0 Build 251204 Rel.20362naffected
TP-Link Systems Inc.HB610(CA) V2.00 < 0.6.0 3.0.0 v60af.0 Build 251216 Rel.46954naffected
TP-Link Systems Inc.HB410( EU1) 1.00 < 0.3.0 3.0.0 v60bf.0 Build 250901 Rel.45574naffected
TP-Link Systems Inc.HB210(US2) 1.00 < 0.2.0 3.0.0 v60f9.0 Build 250826 Rel.47715naffected
TP-Link Systems Inc.HB210(EU1) 1.00 < 0.2.0 3.0.0 v60f9.0 Build 250826 Rel.47715naffected
TP-Link Systems Inc.HB210 Pro(EU1)1.00 < 0.5.0 3.0.0 v60d5.0 Build 250922 Rel.13742naffected
TP-Link Systems Inc.HB210 Pro(US2)1.0/1.60 < 0.8.0 3.0.0 v60d5.0 Build 260318 Rel.78363naffected
TP-Link Systems Inc.HX510(US1) V2.00 < 0.14.0 3.0.0 v6065.0 Build 250822 Rel.81150naffected
TP-Link Systems Inc.HX510(EU1) V2.00 < 0.14.0 3.0.0 v6065.0 Build 250822 Rel.81150naffected
TP-Link Systems Inc.HX510(CA) V1.0/2.00 < 0.14.0 3.0.0 v6065.0 Build 250822 Rel.81150naffected
TP-Link Systems Inc.HX510(AU) V1.0/2.00 < 0.14.0 3.0.0 v6065.0 Build 250822 Rel.81150naffected
TP-Link Systems Inc.HX510(US2) 2.60 < 0.17.0 3.2.2 v6065.0 Build 260722 Rel.10662naffected
TP-Link Systems Inc.HX710(EU1) V1.00 < 0.5.0 3.1.10 v6075.0 Build 260511 Rel.47847naffected
TP-Link Systems Inc.HX710 Pro(EU1) V1.00 < 0.4.0 3.1.10 v6082.0 Build 260204 Rel.49460naffected
TP-Link Systems Inc.HX220(US1) V1.0/1.00 < 0.21.0 2.0.0 v605f.0 Build 250306 Rel.9224naffected
TP-Link Systems Inc.HX220(EU1) V1.00 < 0.21.0 2.0.0 v605f.0 Build 250306 Rel.9224naffected
TP-Link Systems Inc.HX220(CA) V1.00 < 0.21.0 2.0.0 v605f.0 Build 250306 Rel.9224naffected
TP-Link Systems Inc.HX220(AU) V1.00 < 0.21.0 2.0.0 v605f.0 Build 250306 Rel.9224naffected
TP-Link Systems Inc.HX141(EU1) V1.00 < 1.2.0 3.1.0 v609d.0 Build 260128 Rel.29711naffected
TP-Link Systems Inc.HC220-G5(US1) V1.0/1.60 < 0.18.0 2.0.0 v605e.0 Build 250827 Rel.37904naffected
TP-Link Systems Inc.HC220-G5(EU1) V1.20/1.00 < 0.18.0 2.0.0 v605e.0 Build 250827 Rel.37904naffected
TP-Link Systems Inc.HC220-G5(BR) V1.300 < 0.17.0 2.0.0 v605e.0 Build 250618 Rel.19329naffected
TP-Link Systems Inc.EB210 Pro(EU1) 1.00 < 0.2.0 3.0.0 v60f4.0 Build 250807 Rel.58901naffected
TP-Link Systems Inc.EB210 Pro(US1) 1.00 < 0.2.0 3.0.0 v60f4.0 Build 250807 Rel.58901naffected
TP-Link Systems Inc.EB810v(EU1) V1.00 < 0.6.0 3.0.0 v608b.0 Build 250613 Rel.10497naffected
TP-Link Systems Inc.EX141(BR) V1.0/1.90 < 1.8.0 3.1.0 v608a.0 Build 250425 Rel.40905naffected
TP-Link Systems Inc.EX141(EU1) V1.00 < 1.7.0 3.1.0 v608a.0 Build 250418 Rel.8257naffected
TP-Link Systems Inc.EX141(US1) V1.00 < 1.7.0 3.1.0 v608a.0 Build 250418 Rel.8257naffected
TP-Link Systems Inc.EX220(BR) V1.0/1.20/1.28/1.29/1.80 < 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728naffected
TP-Link Systems Inc.EX220(BR) V2.00 < 0.19.0 2.0.0 v609b.0 Build 250814 Rel.49732naffected
TP-Link Systems Inc.EX220(EU1) V1.0/1.200 < 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728naffected
TP-Link Systems Inc.EX220(RU) V1.00 < 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728naffected
TP-Link Systems Inc.EX220(US1) V1.00 < 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728naffected
TP-Link Systems Inc.EX222(EU1) V1.00 < 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728naffected
TP-Link Systems Inc.EX222(KR) V1.00 < 0.20.0 2.0.0 v609b.0 Build 260427 Rel.16915affected
TP-Link Systems Inc.EX222(US1) V1.00 < 0.20.0 2.0.0 v605f.0 Build 250305 Rel.14728naffected
TP-Link Systems Inc.EX511(BR) V2.0/2.8/2.90 < 0.9.0 3.0.0 v607e.0 Build 260520 Rel.33425naffected
TP-Link Systems Inc.EX511(EU1) V2.00 < 0.9.0 3.0.0 v607e.0 Build 260520 Rel.33425naffected
TP-Link Systems Inc.EX511(US1) V2.00 < 0.8.0 3.0.0 v607e.0 Build 260424 Rel.27419naffected
TP-Link Systems Inc.EX520(US1) V1.00 < 0.7.0 3.0.0 v60b4.0 Build 251229 Rel.84306naffected
TP-Link Systems Inc.EX520v(EU1)1.00 < 0.1.0 3.0.0 v60ee.0 Build 250310 Rel.55637naffected
TP-Link Systems Inc.EX521(US1) V1.00 < 0.3.0 3.0.0 v60e3.0 Build 250925 Rel.66797naffected
TP-Link Systems Inc.EX820v(EU1) V1.00 < 0.4.0 3.1.9 v6087.0 Build 250928 Rel.59674naffected
TP-Link Systems Inc.EX920(US2) V1.6/V1.00 < 0.8.0 3.2.2 v6080.0 Build 260309 Rel.54790naffected
TP-Link Systems Inc.XC220-G3v(EU1) V2.300 < 1.16.0 0.8.0 v6062.0 Build 250817 Rel.23310naffected
TP-Link Systems Inc.XC220-G3v(US1) V2.300 < 1.16.0 0.8.0 v6062.0 Build 250817 Rel.23310naffected
TP-Link Systems Inc.XX530v(BR)v1.00 < 0.6.0 3.0.0 v6096.0 Build 250416 Rel.26048naffected
TP-Link Systems Inc.XX530v(BR)v2.00 < 0.4.0 3.1.10 v60dc.0 Build 250520 Rel.69748naffected
TP-Link Systems Inc.XX530v(US1)0 < 0.6.0 3.0.0 v6096.0 Build 250416 Rel.26048naffected
TP-Link Systems Inc.XX530v(EU1)0 < 0.3.0 3.1.10 v6107.0 Build 250425 Rel.71973naffected
TP-Link Systems Inc.XX230v(BR) V1.00 < 0.16.0 3.0.0 v6066.0 Build 250423 Rel.43799naffected
TP-Link Systems Inc.VX800v(DE) V1.00 < 800.0.16affected
TP-Link Systems Inc.VX1800v(EU1) V1.00 < 0.14.0 2.0.0 v6092.0 Build 250417 Rel.24761naffected
TP-Link Systems Inc.VX420-G2h(AU) V3.00 < 0.2.0 2.0.0 v60df.0 Build 250427 Rel.38233naffected

Weaknesses

  • CWE-863: CWE-863: Incorrect Authorization

References