在 Tapo C325WB v2 中,当启用“摄像头账户”(Camera Account)功能时,基于 TCP 端口 554 的 RTSP 流媒体服务存在一个未经身份验证的拒绝服务(DoS)漏洞。攻击者通过构造特定的 RTSP-over-HTTP 隧道请求,可导致内存损坏并致使流媒体守护进程崩溃。 成功利用该漏洞可使未经身份验证的相邻网络攻击者中断实时视频流及相关流媒体功能,直到受影响的服务恢复或重新启动。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| TP-Link Systems Inc. | Tapo C325WB v2 | 0 ~ V2_1.3.3 Build 260914 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105674 | 8.7 HIGH | Predictable Media Stream Pre-Shared Key Vulnerability in TP-Link Tapo C325WB |
| CVE-2026-105672 | 8.7 HIGH | Unauthenticated JSON API Authorization Bypass Vulnerability in TP-Link Tapo C325WB |
No comments yet