CNNVD-202601-4490 Information

CNNVD ID

CNNVD-202601-4490

CVE-2026-0919

  • CNNVD Published: 2026-01-27

Description (Chinese)

TP-Link Tapo C220和TP-Link Tapo C520WS都是中国普联(TP-Link)公司的一个WiFi摄像头。 TP-Link Tapo C220 v1版本和TP-Link Tapo C520WS v2版本存在安全漏洞,该漏洞源于HTTP解析器未正确处理包含过长URL路径的请求,可能导致拒绝服务。

Description (English)

TP-Link Tapo C220 and TP-Link Tapo C520WS are all WiFi cameras of the Plutonium of China (TP-Link). TP-Link Tapo C220 v1 and TP-Link Tapo C520WS v2 have a security loophole, which stems from the fact that the HTTP resolver did not properly process requests containing excessive URL paths, which may lead to the denial of services.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

普联

Published

2026-01-27

Last Modified

2026-02-24

References

https://www.tp-link.com/en/support/download/tapo-c220/v1/ https://www.tp-link.com/en/support/download/tapo-c520ws/v2/ https://www.tp-link.com/us/support/download/tapo-c520ws/v2/ https://www.tp-link.com/us/support/download/tapo-c220/v1.60/ https://www.tp-link.com/us/support/faq/4923/ https://access.redhat.com/security/cve/cve-2026-0919

Patch

https://www.tp-link.com/us/support/faq/4923/

Share on: