August 14, 2026

CVE Watchtower


← Back to CVE List

CVE-2025-30237NVD

Vulnerability Summary

The affected TP-Link Aginet devices contain a flaw in the web management interface where authentication
checks are not consistently enforced on certain endpoints. An attacker can send
specially crafted requests to bypass authentication and directly invoke
privileged functionality without valid credentials. This issue arises from
improper enforcement of access control mechanisms on sensitive operations.





Successful
exploitation may allow an unauthenticated attacker to execute privileged
operations and gain full control of the device.
Severity Level
UNKNOWN
Published Date
Aug 10, 2026
Last Modified
Aug 11, 2026
Exploitation Status
No confirmed exploitation yet
EPSS Score (30-Day)
0.22%Probability
Root Weakness (CWE)
N/A