CVE-2026-1871
TP-Link Systems Inc. Tapo C200 v5, tapo c200 firmware, tapo c200 취약점
TP-Link Tapo C200 v5 contains a stack-based buffer overflow flaw in RTSP authentication handling due to improper validation of Authorization header field lengths, which can be triggered by a crafted authentication request. Successful exploitation causes the affected RTSP core service process to crash and triggers an automatic system reboot, resulting in a denial of service (DoS) condition. This prevents legitimate users from accessing the camera’s live video stream or management interface until the service restarts.
- 대응 우선순위
- 점검
- CVSS
- 7.1
- EPSS
- 0.30% 백분위 22.9% · 2026.08.03 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.06.03