TP-Link Tapo C200 v5 contains a stack-based buffer overflow flaw in RTSP authentication handling due to improper validation of Authorization header field lengths, which can be triggered by a crafted authentication request.
Successful exploitation causes the affected RTSP core service process to crash and triggers an automatic system reboot, resulting in a denial of service (DoS) condition. This prevents legitimate users from accessing the camera’s live video stream or management interface until the service restarts.
References
| Link | Resource |
|---|---|
| https://www.tp-link.com/en/support/download/tapo-c200/v5/#Firmware-Release-Notes | Release Notes |
| https://www.tp-link.com/kr/support/download/tapo-c200/#Firmware-Release-Notes | Release Notes |
| https://www.tp-link.com/us/support/download/tapo-c200/v5/#Firmware-Release-Notes | Release Notes |
| https://www.tp-link.com/us/support/faq/5113/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2026-06-02 17:16
Updated : 2026-07-22 19:10
NVD link : CVE-2026-1871
Mitre link : CVE-2026-1871
CVE.ORG link : CVE-2026-1871
JSON object : View
Products Affected
tp-link
- tapo_c200
- tapo_c200_firmware
CWE
CWE-121
Stack-based Buffer Overflow
