cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-38907,https://securityvulnerability.io/vulnerability/CVE-2023-38907,Replay Attack Vulnerability in TPLink Smart Bulb Tapo Series,"An identified vulnerability in TPLink's Tapo series of smart bulbs allows remote attackers to replay previously intercepted messages due to weaknesses in message encryption. This can occur when valid session keys are still in use, enabling unauthorized access to controls and functions of the affected devices. Users with products such as the Tapo L530, L510E, L630, P100, and the Tapo Application are particularly at risk, as outdated firmware versions may be exploited by attackers to compromise household security.",Tp-link,Tapo L530e Firmware,7.5,HIGH,0.001449999981559813,false,false,false,false,,false,false,2023-09-25T23:15:00.000Z,0 CVE-2023-38909,https://securityvulnerability.io/vulnerability/CVE-2023-38909,,"An issue in TPLink Smart Bulb Tapo series L530 before 1.2.4, L510E before 1.1.0, L630 before 1.0.4, P100 before 1.5.0, and Tapo Application 2.8.14 allows a remote attacker to obtain sensitive information via the IV component in the AES128-CBC function.",Tp-link,"Tapo,Tapo L530e Firmware",6.5,MEDIUM,0.0012199999764561653,false,false,false,false,,false,false,2023-08-22T01:15:00.000Z,0 CVE-2023-38908,https://securityvulnerability.io/vulnerability/CVE-2023-38908,,"An issue in TPLink Smart Bulb Tapo series L530 before 1.2.4, L510E before 1.1.0, L630 before 1.0.4, P100 before 1.5.0, and Tapo Application 2.8.14 allows a remote attacker to obtain sensitive information via the TSKEP authentication function.",Tp-link,"Tapo,Tapo L530e Firmware",6.5,MEDIUM,0.0012000000569969416,false,false,false,false,,false,false,2023-08-22T01:15:00.000Z,0 CVE-2023-38906,https://securityvulnerability.io/vulnerability/CVE-2023-38906,,"An issue in TPLink Smart Bulb Tapo series L530 1.1.9, L510E 1.0.8, L630 1.0.3, P100 1.4.9, Smart Camera Tapo series C200 1.1.18, and Tapo Application 2.8.14 allows a remote attacker to obtain sensitive information via the authentication code for the UDP message.",Tp-link,"Tapo,Tapo L530e Firmware",6.5,MEDIUM,0.0009200000204145908,false,false,false,false,,false,false,2023-08-22T00:15:00.000Z,0