TP-Link Tapo C220和TP-Link Tapo C520WS都是中国普联(TP-Link)公司的一个WiFi摄像头。 TP-Link Tapo C220 v1版本和P-Link Tapo C520WS v2版本存在安全漏洞,该漏洞源于HTTP服务未安全处理包含过大Content-Length标头的POST请求,可能导致拒绝服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| TP-Link Systems Inc. | Tapo C100 v5 | < 1.4.3 Build 251128 |
affected |
| TP-Link Systems Inc. | Tapo C220 v1 | < 1.4.2 Build 251112 |
affected |
| TP-Link Systems Inc. | Tapo C520WS v2 | < 1.2.3 Build 251114 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| TP-Link Systems Inc. | Tapo C220 v1 | 0 ~ 1.4.2 Build 251112 | - |
|
| TP-Link Systems Inc. | Tapo C520WS v2 | 0 ~ 1.2.3 Build 251114 | - |
|
| TP-Link Systems Inc. | Tapo C100 v5 | 0 ~ 1.4.3 Build 251128 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-0919 | Unauthenticated Denial of Service via Oversized URL in HTTP Parser on TP-Link Tapo C210, C | |
| CVE-2026-1315 | Unauthenticated Denial of Service via Firmware Update Endpoint on TP-Link Tapo C220 & C520 |
No comments yet