Tapo C100/C101 V5 contains a null pointer dereference vulnerability in the RTSP service. An attacker on the local network can send specially crafted requests that cause the service to dereference an invalid pointer, resulting in a service crash and device reboot. Successful exploitation can disrupt live video streaming functionality and cause a temporary denial-of-service condition.
Attack Parameters
Impact Assessment
CVSS Vector v4.0
Weakness Type (CWE)
Vulnerable Products 4
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Tp-Link Tapo_C100_Firmware
cpe:2.3:o:tp-link:tapo_c100_firmware:*:*:*:*:*:*:*:*
|
— |
1.5.4
|
|
Tp-Link Tapo_C100
cpe:2.3:h:tp-link:tapo_c100:5.0:*:*:*:*:*:*:*
|
— | — |
|
Tp-Link Tapo_C101_Firmware
cpe:2.3:o:tp-link:tapo_c101_firmware:*:*:*:*:*:*:*:*
|
— |
1.5.4
|
|
Tp-Link Tapo_C101
cpe:2.3:h:tp-link:tapo_c101:5.0:*:*:*:*:*:*:*
|
— | — |