PT-2026-29846 · Tp Link Systems+1 · Tapo C520Ws V2.6+1

Published

2026-04-02

·

Updated

2026-04-30

·

CVE-2026-34118

CVSS v4.0

7.1

High

VectorAV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions TP-Link Tapo C520WS version 2.6
Description A heap-based buffer overflow exists in the HTTP POST body parsing logic due to insufficient boundary validation and missing validation of remaining buffer capacity after dynamic allocation when handling externally supplied HTTP input. An attacker on the same network segment can trigger heap memory corruption by sending crafted payloads that cause write operations beyond allocated buffer boundaries. This can lead to a Denial-of-Service (DoS) condition, causing the device process to crash or become unresponsive, or potentially enable remote code execution (RCE).
Recommendations Update TP-Link Tapo C520WS version 2.6 to the latest firmware version released by TP-Link. Implement robust input validation on network perimeters and segment devices to reduce exposure.

Fix

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-34118

Affected Products

Tapo C520Ws V2.6
Tapo C520Ws Firmware