Home
HIGH: 7.1 CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:NDefault status
unaffected
Any version before C200(US)_V3_1.4.5 Build 251104
affected
Description
A buffer overflow vulnerability exists in the ONVIF XML parser of Tapo C200 V3. An unauthenticated attacker on the same local network segment can send specially crafted SOAP XML requests, causing memory overflow and device crash, resulting in denial-of-service (DoS).
Problem types
CWE-400 Uncontrolled Resource Consumption
Product status
Any version before C200(US)_V3_1.4.5 Build 251104
Credits
Simone Margaritelli (evilsocket)
References
www.tp-link.com/us/support/download/tapo-c200/v3/
www.tp-link.com/us/support/faq/4849/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.