Vulnerabilities > TP Link > Tapo C200 Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-01-17 CVE-2023-49515 Unspecified vulnerability in Tp-Link Tapo C200 Firmware and Tapo Tc70 Firmware
Insecure Permissiosn vulnerability in TP Link TC70 and C200 WIFI Camera v.3 firmware v.1.3.4 and fixed in v.1.3.11 allows a physically proximate attacker to obtain sensitive information via a connection to the UART pin components.
low complexity
tp-link
4.6
2023-06-06 CVE-2023-27126 Insufficiently Protected Credentials vulnerability in Tp-Link Tapo C200 Firmware 1.2.2
The AES Key-IV pair used by the TP-Link TAPO C200 camera V3 (EU) on firmware version 1.1.22 Build 220725 is reused across all cameras.
low complexity
tp-link CWE-522
4.6
2022-03-10 CVE-2021-4045 Command Injection vulnerability in Tp-Link Tapo C200 Firmware
TP-Link Tapo C200 IP camera, on its 1.1.15 firmware version and below, is affected by an unauthenticated RCE vulnerability, present in the uhttpd binary running by default as root.
network
low complexity
tp-link CWE-77
critical
9.8
2020-04-01 CVE-2020-11445 Improper Authentication vulnerability in Tp-Link products
TP-Link cloud cameras through 2020-02-09 allow remote attackers to bypass authentication and obtain sensitive information via vectors involving a Wi-Fi session with GPS enabled, aka CNVD-2020-04855.
network
low complexity
tp-link CWE-287
5.0