7.1

CVE-2026-9032

Unauthenticated Onboarding Connect NULL Pointer Dereference Denial of Service Vulnerability in TP-Link Tapo C120 & C200

Tapo C120 v1 and C200 v5
contain a NULL pointer dereference in the HTTPS onboarding connect request parser.  The interface is reachable without
authentication after initial setup and does not validate that a password field
is present for certain authentication and encryption parameter combinations,
allowing a malformed request from the same local network to crash the HTTPS service










 Successful exploitation may
temporarily make HTTPS management functions unavailable. Repeated malformed
requests may sustain the denial-of-service condition, and recovery may in some
cases require a device reboot.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerTP-Link Systems Inc.
≫
Produkt Tapo C200 V5
Default Statusunaffected
Version 0
Version < V5_1.4.6 Build 260709 Rel.27675n
Status affected
HerstellerTP-Link Systems Inc.
≫
Produkt Tapo C120 V1
Default Statusunaffected
Version 0
Version < V1_1.9.4 Build 260813 Rel.79754n
Status affected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.14% 0.03
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
f23511db-6c3e-4e32-a477-6aa17d310630 7.1 0 0
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.

https://www.tp-link.com/en/support/download/tapo-c200/v5/#Firmware-Release-Notes
https://www.tp-link.com/us/support/download/tapo-c200/v5/#Firmware-Release-Notes
https://www.tp-link.com/en/support/download/tapo-c120/v1.26/#Firmware-Release-Notes
https://www.tp-link.com/us/support/download/tapo-c120/v1.26/#Firmware-Release-Notes
https://www.tp-link.com/us/support/faq/5321/