CVE Explorer
CVE-2026-13230
An information disclosure vulnerability was identified in TP-Link Kasa EC70 v4 and EC71 v4 in the local discovery mechanism, which exposes
sensitive geolocation information without requiring authentication. This issue
allows an attacker on the same local network to retrieve geolocation-related
data through crafted responses.
The
vulnerability impacts confidentiality only, with no evidence of integrity of
availability impact.
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
1
Preserved source conflicts
No provider value was silently selected as the winner.
affected · 2 assertions
{"defaultStatus":"unaffected","platforms":["NVMP"],"product":"Kasa EC70 v4","vendor":"TP-Link Systems Inc.","versions":[{"lessThan":"2.4.1 Build 20260621 rel.76536","status":"affected","version":"0","versionType":"custom"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/affected/1
{"defaultStatus":"unaffected","platforms":["NVMP"],"product":"Kasa EC71 v4","vendor":"TP-Link Systems Inc.","versions":[{"lessThan":"2.4.1 Build 20260621 rel.76536","status":"affected","version":"0","versionType":"custom"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/affected/0
Affected products and versions
2 source assertions{"defaultStatus":"unaffected","platforms":["NVMP"],"product":"Kasa EC70 v4","vendor":"TP-Link Systems Inc.","versions":[{"lessThan":"2.4.1 Build 20260621 rel.76536","status":"affected","version":"0","versionType":"custom"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/affected/1
{"defaultStatus":"unaffected","platforms":["NVMP"],"product":"Kasa EC71 v4","vendor":"TP-Link Systems Inc.","versions":[{"lessThan":"2.4.1 Build 20260621 rel.76536","status":"affected","version":"0","versionType":"custom"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","Safety":"NOT_DEFINED","attackComplexity":"LOW","attackRequirements":"NONE","attackVector":"ADJACENT","baseScore":5.3,"baseSeverity":"MEDIUM","exploitMaturity":"NOT_DEFINED","privilegesRequired":"NONE","providerUrgency":"NOT_DEFINED","subAvailabilityImpact":"NONE","subConfidentialityImpact":"NONE","subIntegrityImpact":"NONE","userInteraction":"NONE","valueDensity":"NOT_DEFINED","vectorString":"CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N","version":"4.0","vulnAvailabilityImpact":"NONE","vulnConfidentialityImpact…
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/metrics/0/cvssV4_0
CWE assertions
1 source assertion{"cweId":"CWE-200","description":"CWE-200 Exposure of Sensitive Information to an Unauthorized Actor","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/problemTypes/0/descriptions/0
Source references
5 source assertions{"tags":["patch"],"url":"https://www.tp-link.com/en/support/download/ec70/v4/#Firmware-Release-Notes"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/references/3
{"tags":["patch"],"url":"https://www.tp-link.com/en/support/download/ec71/#Firmware-Release-Notes"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/references/1
{"tags":["patch"],"url":"https://www.tp-link.com/us/support/download/ec70/v4/#Firmware-Release-Notes"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/references/2
{"tags":["patch"],"url":"https://www.tp-link.com/us/support/download/ec71/#Firmware-Release-Notes"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/references/0
{"tags":["vendor-advisory"],"url":"https://www.tp-link.com/us/support/faq/5192/"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:50224c43f81ec950678db72522533c63ee668cefce1f01ea5a6471f08dad3354 · sha256:b8de5b9b5b017107… · /containers/cna/references/4
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.