CVE-2021-4045
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
TP-Link Tapo C200 IP camera, on its 1.1.15 firmware version and below, is affected by an unauthenticated RCE vulnerability, present in the uhttpd binary running by default as root. The exploitation of this vulnerability allows an attacker to take full control of the camera.
Affected (1)
Products: Tp Link: Tapo C200 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.1.15 |
| Running on/with | Platform Versions |
|---|---|
Tp Link Tapo C200 | All versions |
References (4)
Source: cve-coordination@incibe.es
ExploitThird Party AdvisoryVDB Entry
Source: cve-coordination@incibe.es
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.