漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Denial-of-Service Vulnerability via Malformed IPv4 Fragmentation Handling in TP-Link Tapo C200
Vulnerability Description
A denial-of-service (DoS) vulnerability has been identified in Tapo C200 v3 in the network packet handling logic due to improper handling of IPv4 fragmented packets. An unauthenticated adjacent attacker can send crafted packets to cause excessive resource consumption, leading to instability of the device.Successful exploitation can remotely trigger a temporary denial-of-service condition, causing the camera to become unresponsive and resulting in intermittent loss of video monitoring and recording.
CVSS Information
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Vulnerability Type
不加限制或调节的资源分配
Vulnerability Title
TP-Link Tapo C200 资源管理错误漏洞
Vulnerability Description
TP-Link Tapo C200是中国TP-Link公司的一款网络摄像头设备。 Tapo C200 v3 1.4.4 Build 250922之前版本存在资源管理错误漏洞,该漏洞源于网络数据包处理逻辑不当,可能导致未经身份验证的邻近攻击者发送特制数据包造成资源消耗过多,导致设备不稳定。
CVSS Information
N/A
Vulnerability Type
N/A