CVE-2026-105672
Received Received - Intake

Unauthenticated Authorization Bypass in TP-Link Tapo C325WB V2

Vulnerability report for CVE-2026-105672, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-08

Last updated on: 2026-10-08

Assigner: TPLink

Description

TP-Link Tapo C325WB V2 contains an unauthenticated authorization bypass vulnerability in the HTTPS JSON API dispatcher on TCP port 443. An attacker on the adjacent network can append an onboarding-scoped object to a JSON request to bypass session verification and invoke privileged actions without authentication.Β  Successful exploitation may allow an unauthenticated adjacent-network attacker to access live video and audio, modify device settings, and obtain sensitive device information or secrets.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-08
Last Modified
2026-10-08
Generated
2026-10-09
AI Q&A
2026-10-09
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
TP-Link Systems Inc. Tapo C325WB v2 0

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-287 When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

TP-Link Tapo C325WB V2 has an unauthenticated authorization bypass flaw in its HTTPS JSON API dispatcher on TCP port 443. An attacker on the same network can manipulate JSON requests by adding an onboarding-scoped object to bypass session checks and perform privileged actions without authentication.

Detection Guidance

This vulnerability can be detected by checking for unauthorized access attempts on TCP port 443 of TP-Link Tapo C325WB V2 devices. Monitor network traffic for JSON requests containing 'onboarding-scoped' objects. Use tools like nmap to scan for open ports and tcpdump to capture suspicious HTTPS traffic.

Impact Analysis

Exploitation may allow an attacker to access live video and audio feeds, change device settings, or steal sensitive information like device secrets without needing credentials.

Compliance Impact

This vulnerability allows unauthorized access to live video, audio, and sensitive device information without authentication. This could lead to violations of GDPR (data protection) and HIPAA (privacy and security) by exposing personal or health-related data without consent.

Mitigation Strategies

Immediately isolate the affected TP-Link Tapo C325WB V2 device from the network to prevent unauthorized access. Disable remote access features if enabled and update the device firmware to the latest version if a patch is available. Monitor network traffic for suspicious activity on TCP port 443.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-105672. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart