CVE-2026-1871
Analyzed Analyzed - Analysis Complete
Stack-Based Buffer Overflow in TP-Link Tapo C200 v5 RTSP Authentication

Publication date: 2026-06-02

Last updated on: 2026-06-04

Assigner: TPLink

Description
TP-Link Tapo C200 v5 contains a stack-based buffer overflow flaw in RTSP authentication handling due to improper validation of Authorization header field lengths, which can be triggered by a crafted authentication request. Successful exploitation causes the affected RTSP core service process to crash and triggers an automatic system reboot, resulting in a denial of service (DoS) condition. This prevents legitimate users from accessing the camera’s live video stream or management interface until the service restarts.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-06-02
Last Modified
2026-06-04
Generated
2026-06-23
AI Q&A
2026-06-02
EPSS Evaluated
2026-06-21
NVD
EUVD
Affected Vendors & Products
Showing 10 associated CPEs
Vendor Product Version / Range
tp-link tapo_c200_firmware 1.0.12
tp-link tapo_c200_firmware 1.0.13
tp-link tapo_c200_firmware 1.0.17
tp-link tapo_c200_firmware 1.0.5
tp-link tapo_c200_firmware 1.1.4
tp-link tapo_c200_firmware 1.1.8
tp-link tapo_c200_firmware 1.2.3
tp-link tapo_c200_firmware 1.3.1
tp-link tapo_c200_firmware 1.3.3
tp-link tapo_c200_firmware 1.3.5
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-121 A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

CVE-2026-1871 is a stack-based buffer overflow vulnerability in the RTSP authentication handling of the TP-Link Tapo C200 v5 camera. It occurs because the device improperly validates the length of the Authorization header field in authentication requests.

An attacker can exploit this flaw by sending a specially crafted authentication request, which causes the RTSP core service process to crash and triggers an automatic system reboot.

Impact Analysis

Successful exploitation of this vulnerability results in a denial of service (DoS) condition. The affected RTSP core service crashes and the system automatically reboots.

During this downtime, legitimate users are prevented from accessing the camera’s live video stream or management interface until the service restarts.

Mitigation Strategies

To mitigate the CVE-2026-1871 vulnerability in the TP-Link Tapo C200 v5 camera, it is recommended to update the device firmware to the latest version.

Specifically, update to firmware version 1.4.4 Build 260527 Rel.28339n or later, as this version addresses the stack-based buffer overflow flaw in the RTSP authentication mechanism.

Failure to apply this update may leave the device vulnerable to denial of service attacks caused by crafted authentication requests.

Compliance Impact

The provided information does not specify any direct impact of this vulnerability on compliance with common standards and regulations such as GDPR or HIPAA.

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-1871. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart