CVSS 3.1 Score 7.5 of 10 (high)


Published Jan 9, 2024
Updated: Jan 12, 2024
CWE ID 312


CVE-2023-27098 is a cyber vulnerability that affects TP-Link Tapo APK up to version 2.12.703. The vulnerability arises from the use of hardcoded credentials for accessing the login panel. This vulnerability poses a high risk to organizations as it allows unauthorized access to sensitive information, with a confidentiality impact rated as high. The base severity score is 7.5, indicating a significant threat level. The vulnerability can be exploited remotely over the network without requiring any privileges or user interaction. To remediate this vulnerability, it is recommended to update the TP-Link Tapo APK to the latest version that addresses this issue.

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2023-27098 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options