TP-Link Tapo C520WS是中国普联(TP-Link)公司的一个WiFi摄像头。 TP-Link Tapo C520WS v2.6版本存在安全漏洞,该漏洞源于DS配置服务的HTTP处理中身份验证检查期间JSON请求的解析和授权逻辑不一致,可能导致身份验证绕过,进而未经授权修改设备状态。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| TP-Link Systems Inc. | Tapo C520WS v2.6 | 0 ~ 1.2.4 Build 260326 Rel.24666n | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-34118 | 7.1 HIGH | Heap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C100 |
| CVE-2026-34119 | Heap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C520 | |
| CVE-2026-34124 | Denial of Service via Path Expansion Overflow in HTTP Service in TP-Link Tapo C520WS | |
| CVE-2026-34122 | Stack-based Buffer Overflow Leading to Denial of Service in TP-Link Tapo C520WS | |
| CVE-2026-34120 | Heap-based Buffer Overflow Vulnerability Leading to Denial-of-Service in TP-Link Tapo C520 |
No comments yet