CVE 7.1 HIGH

Buffer Overflow in ONVIF XML Parser on Tapo C200_CVE-2025-8065

7.1 / 10
HIGH
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Description

A buffer overflow vulnerability exists in the ONVIF XML parser of Tapo C200 V3. An unauthenticated attacker on the same local network segment can send specially crafted SOAP XML requests, causing memory overflow and device crash, resulting in denial-of-service (DoS).

Basic Information

ID CVE-2025-8065
Source TPLink
Published Dec 20, 2025 at 00:41

Affected Product

Vendor TP-Link Systems Inc.
Product Tapo C200 V3
Affected Versions TP-Link Systems Inc. Tapo C200 V3 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.