PT-2026-29846 · Tp Link Systems+1 · Tapo C520Ws V2.6+1
Published
2026-04-02
·
Updated
2026-04-30
·
CVE-2026-34118
CVSS v4.0
7.1
High
| Vector | AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
TP-Link Tapo C520WS version 2.6
Description
A heap-based buffer overflow exists in the HTTP POST body parsing logic due to insufficient boundary validation and missing validation of remaining buffer capacity after dynamic allocation when handling externally supplied HTTP input. An attacker on the same network segment can trigger heap memory corruption by sending crafted payloads that cause write operations beyond allocated buffer boundaries. This can lead to a Denial-of-Service (DoS) condition, causing the device process to crash or become unresponsive, or potentially enable remote code execution (RCE).
Recommendations
Update TP-Link Tapo C520WS version 2.6 to the latest firmware version released by TP-Link.
Implement robust input validation on network perimeters and segment devices to reduce exposure.
Fix
Heap Based Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Tapo C520Ws V2.6
Tapo C520Ws Firmware