← Back

CVE-2026-75618

nvd nist
Published: Aug 19, 2026Modified: Sep 4, 2026

JSON object

Loading...
7.1
Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: f23511db-6c3e-4e32-a477-6aa17d310630 (Secondary)

Description

Tapo C100/C101 V5 contains a null pointer dereference vulnerability in the RTSP service. An attacker on the local network can send specially crafted requests that cause the service to dereference an invalid pointer, resulting in a service crash and device reboot. Successful exploitation can disrupt live video streaming functionality and cause a temporary denial-of-service condition.

Affected (2)

2 products
Tapo C100 Firmware
Tapo C101 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.5.4
Running on/withPlatform Versions
Tp Link
Tapo C100
Version 5.0
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.5.4
Running on/withPlatform Versions
Tp Link
Tapo C101
Version 5.0

References (4)

Source: f23511db-6c3e-4e32-a477-6aa17d310630
Release Notes
Source: f23511db-6c3e-4e32-a477-6aa17d310630
Release Notes
Source: f23511db-6c3e-4e32-a477-6aa17d310630
Release Notes
Source: f23511db-6c3e-4e32-a477-6aa17d310630
Vendor Advisory

Timeline

No history available yet.