A denial-of-service
vulnerability exists in the RTSP server component of TP-Link Tapo C520WS v2 due to improper handling of
syntactically invalid input. Crafted inputs
can trigger a processing error, causing the RTSP service to enter non-responsive
state.
Successful
exploitation may cause the RTSP in a denial-of-service condition.
References
Configurations
Configuration 1 (hide)
| AND |
|
History
19 Jun 2026, 03:09
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
| CPE | cpe:2.3:o:tp-link:tapo_c520ws_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:tp-link:tapo_c520ws:2.0:*:*:*:*:*:*:* |
|
| CWE | NVD-CWE-noinfo | |
| References | () https://www.tp-link.com/en/support/download/tapo-c520ws/v2/#Firmware-Release-Notes - Product | |
| References | () https://www.tp-link.com/us/support/download/tapo-c520ws/v2/#Firmware-Release-Notes - Product | |
| References | () https://www.tp-link.com/us/support/faq/5118/ - Vendor Advisory | |
| First Time |
Tp-link
Tp-link tapo C520ws Firmware Tp-link tapo C520ws |
05 Jun 2026, 17:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-05 17:17
Updated : 2026-06-19 03:09
NVD link : CVE-2026-8714
Mitre link : CVE-2026-8714
CVE.ORG link : CVE-2026-8714
JSON object : View
Products Affected
tp-link
- tapo_c520ws_firmware
- tapo_c520ws
CWE
