TP-Link Tapo C325WB V2 在 TCP 443 端口的 HTTPS JSON API 分发模块中存在一个未认证的授权绕过漏洞。处于相邻网络中的攻击者可以通过在 JSON 请求中附加一个“初始设置作用域”的对象,来绕过会话验证,从而在未进行身份认证的情况下调用特权操作。 成功利用该漏洞可使未认证的相邻网络攻击者访问实时音视频流、修改设备设置,并获取敏感的设备信息或机密数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| TP-Link Systems Inc. | Tapo C325WB v2 | 0 ~ V2_1.3.3 Build 260914 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105674 | 8.7 HIGH | Predictable Media Stream Pre-Shared Key Vulnerability in TP-Link Tapo C325WB |
| CVE-2026-105673 | 7.1 HIGH | Unauthenticated RTSP Tunnel Denial-of-Service Vulnerability in TP-Link Tapo C325WB |
No comments yet