PT-2026-6601 · Tp Link · Tapo H100+1
CVE-2025-15557
·
Publicado
2026-02-05
·
Atualizado
2026-02-05
CVSS v3.1
8.8
Alta
| Vetor | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
TP-Link Tapo H100 version 1
TP-Link Tapo P100 version 1
Description
An improper certificate validation issue exists in the software. An attacker on the same network segment can intercept and modify encrypted communications between the device and the cloud. This could compromise the confidentiality and integrity of data exchanged between the device and the cloud, potentially allowing manipulation of device data or operations.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Improper Certificate Validation
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Tapo H100
Tapo P100