← Back

CVE-2025-14299

nvd nist
Published: Dec 20, 2025Modified: Jun 17, 2026

JSON object

Loading...
7.1
Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: f23511db-6c3e-4e32-a477-6aa17d310630 (Secondary)

Description

The HTTPS server on Tapo C200 V3 does not properly validate the Content-Length header, which can lead to an integer overflow. An unauthenticated attacker on the same local network segment can send crafted HTTPS requests to trigger excessive memory allocation, causing the device to crash and resulting in denial-of-service (DoS).

Affected (12)

1 product
Tapo C200 Firmware
Configuration A
12 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Tp Link
Version 1.3.11 build_231115
Version 1.3.13 build_240327
Version 1.3.14 build_240513
Version 1.3.15 build_240715
Version 1.3.3 build_230228
Version 1.3.4 build_230424
Version 1.3.5 build_230717
Version 1.3.7 build_230920
Version 1.3.9 build_231019
Version 1.4.1 build_241212
Version 1.4.2 build_250313
Version 1.4.4 build_250922
Running on/withPlatform Versions
Tp Link
Tapo C200
Version 3

References (2)

Source: f23511db-6c3e-4e32-a477-6aa17d310630
Release Notes
Source: f23511db-6c3e-4e32-a477-6aa17d310630
Vendor Advisory

Timeline

No history available yet.