PT-2026-29846 · Tp Link Systems+1 · Tapo C100 V5+3

·

CVE-2026-34118

·

Published

2026-04-02

·

Updated

2026-08-19

CVSS v4.0

7.1

High

VectorAV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions TP-Link Tapo C100/C101 version 5 TP-Link Tapo C520WS version 2.6
Description A heap-based buffer overflow occurs in the HTTP POST body parsing logic due to insufficient boundary validation and missing validation of remaining buffer capacity after dynamic allocation when handling externally supplied HTTP input. An attacker on the same network segment can trigger heap memory corruption by sending crafted payloads that cause write operations beyond the allocated buffer boundaries. Successful exploitation can lead to a Denial-of-Service (DoS) condition, causing the device process to crash or become unresponsive, or potentially enable remote code execution (RCE).
Recommendations Update TP-Link Tapo C100/C101 version 5 to the latest firmware released by TP-Link. Update TP-Link Tapo C520WS version 2.6 to the latest firmware released by TP-Link. Implement robust input validation on network perimeters and segment devices to reduce exposure.

Fix

DoS

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-34118

Affected Products

Tapo C100 V5
Tapo C101 V5
Tapo C520Ws V2.6
Tapo C520Ws Firmware