CVE Database
/

CVE-2023-28368

Back to search

CVE-2023-28368

Published: Apr 11, 2023

Modified: Feb 10, 2025

PUBLISHED

Description

TP-Link L2 switch T2600G-28SQ firmware versions prior to 'T2600G-28SQ(UN)_V1_1.0.6 Build 20230227' uses vulnerable SSH host keys. A fake device may be prepared to spoof the affected device with the vulnerable host key.If the administrator may be tricked to login to the fake device, the credential information for the affected device may be obtained.

VendorProductVersions

TP-Link Corporation Limited

T2600G-28SQ

affected
firmware versions prior to 'T2600G-28SQ(UN)_V1_1.0.6 Build 20230227'

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now