CVE-2026-9770: Hardcoded Cryptographic Key Information Disclosure Vulnerability on TP-Link Kasa EC70 and EC71
Kasa EC71 v4 and EC70 v4 firmware contains a static cryptographic private key stored in a read-only filesystem that is shared across devices. An attacker with access to the firmware image can extract the embedded key.
Successful exploitation may allow an unauthenticated attacker on the same network to use this key in the web management service, compromising the confidentiality of encrypted communications. This may enable passive decryption of traffic or active man-in-the-middle (MITM) attacks
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-9770?
CVE-2026-9770 has a high severity rating of 8.6.
How do I fix CVE-2026-9770?
To mitigate CVE-2026-9770, update the firmware of the TP-Link Kasa EC70 and EC71 devices to the latest version provided by the manufacturer.
What are the potential risks associated with CVE-2026-9770?
CVE-2026-9770 may allow an attacker on the same network to extract a hardcoded cryptographic key, leading to information disclosure.
Which devices are affected by CVE-2026-9770?
CVE-2026-9770 affects TP-Link Kasa EC70 and EC71 devices, specifically version 4 firmware.
Can CVE-2026-9770 be exploited remotely?
CVE-2026-9770 requires local network access, making remote exploitation not possible without initial network access.