PT-2025-39924 · Tp Link · Tapo D230S1

Published

2025-09-30

·

Updated

2025-09-30

·

CVE-2025-10991

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Tapo D230S1 versions prior to 1.2.2 Build 20250907
Description An attacker may gain root access by connecting to the UART port. This requires physical access to the device.
Recommendations Update to version 1.2.2 Build 20250907 or later.

Fix

Missing Authentication

Weakness Enumeration

Related Identifiers

BDU:2025-12691
CVE-2025-10991

Affected Products

Tapo D230S1