In the management interface on TP-Link Archer C5v 1.7_181221 devices, credentials are sent in a base64 format over cleartext HTTP.
References
Link Resource
https://gokay.org/tp-link-archer-c5v-base64-cookie/ Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-02-13T00:05:15

Updated: 2021-02-13T00:05:15

Reserved: 2021-02-13T00:00:00


Link: CVE-2021-27209

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-02-13T01:15:12.733

Modified: 2021-02-19T17:09:30.867


Link: CVE-2021-27209

JSON object: View

cve-icon Redhat Information

No data.

CWE