CVE 7.1 HIGH

Denial-of-Service Vulnerability in RTSP Input Handling on TP-Link’s Tapo C520WS_CVE-2026-8714

7.1 / 10
HIGH
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Description

A denial-of-service
vulnerability exists in the RTSP server component of TP-Link Tapo C520WS v2 due to improper handling of
syntactically invalid input.  Crafted inputs
can trigger a processing error, causing the RTSP service to enter non-responsive
state.





Successful
exploitation may cause the RTSP in a denial-of-service condition.

Basic Information

ID CVE-2026-8714
Source TPLink
Published Jun 5, 2026 at 16:14

Affected Product

Vendor TP-Link Systems Inc.
Product Tapo C520WS v2
Affected Versions TP-Link Systems Inc. Tapo C520WS v2 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.