CVE-2025-30239: TP-Link Systems Inc EB210 PROEU1 1.0
High severity, CVSS 8.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In affected TP-Link Aginet devices, use of hardcoded cryptographic keys embedded in the firmware to protect sensitive configuration data may allow an attacker who has access to device storage to recover the keys and decrypt stored data. Successful exploitation may allow access to decrypted sensitive configuration data, including credentials and service-related information.
Affected products
- TP-Link Systems Inc EB210 PROEU1 1.0
- TP-Link Systems Inc EB210 PROUS1 1.0
- TP-Link Systems Inc EB810VEU1 v1.0
- TP-Link Systems Inc EC220-g5br v3.0
- TP-Link Systems Inc EC220-g5eu1 v3.0
- TP-Link Systems Inc EC220-g5us1 v3.0
- TP-Link Systems Inc EC225-g5br v1.0
- TP-Link Systems Inc EC225-g5eu1 v1.0
- TP-Link Systems Inc EC225-g5us1 v1.0
- TP-Link Systems Inc EX141BR v1.0/1.9
- TP-Link Systems Inc EX141EU1 v1.0
- TP-Link Systems Inc EX141US1 v1.0
- TP-Link Systems Inc EX220BR v1.0/1.20/1.28/1.29/1.8
- TP-Link Systems Inc EX220BR v2.0
- TP-Link Systems Inc EX220EU1 v1.0/1.20
- TP-Link Systems Inc EX220RU v1.0
- TP-Link Systems Inc EX220US1 v1.0
- TP-Link Systems Inc EX222EU1 v1.0
- TP-Link Systems Inc EX222KR v1.0
- TP-Link Systems Inc EX222US1 v1.0
- TP-Link Systems Inc EX511BR v2.0/2.8/2.9
- TP-Link Systems Inc EX511EU1 v2.0
- TP-Link Systems Inc EX511US1 v2.0
- TP-Link Systems Inc EX520US1 v1.0
- TP-Link Systems Inc EX520VEU11.0
- and 40 more
Published 2026-08-10. Last modified 2026-10-09.