T

Tp-Link Security Vulnerabilities (CVE)

Explore vulnerabilities and security advisories affecting Tp-Link products.

6 known CVE vulnerabilities tracked

Critical
0
High
3
Medium
3
Low
0
None
0

Vulnerabilities By Year

Products Affected

All Tp-Link CVEs

CVE-2025-14175
6.5 medium

A vulnerability in the SSH server of TP-Link TL-WR820N v2.80 allows the use of a weak cryptographic algorithm, enabling an adjacent attacker to intercept and decrypt SSH traffic. Exploitation may expose sensitive information and compromise confidentiality.

Tl-Wr820N Firmware Dec 29, 2025
CVE-2025-8065
6.5 medium

A stack-based buffer overflow vulnerability was identified in the ONVIF SOAP XML Parser in Tapo C200 v3 and C520WS v2.6. When processing XML tags with namespace prefixes, the parser fails to validate the prefix length before copying it to a fixed-size stack buffer. It allowed a crafted SOAP request

Tapo C200 Firmware Dec 20, 2025
CVE-2025-14300
8.1 high

The HTTPS service on Tapo C200 V3 exposes a connectAP interface without proper authentication. An unauthenticated attacker on the same local network segment can exploit this to modify the device’s Wi-Fi configuration, resulting in loss of connectivity and denial-of-service (DoS).

Tapo C200 Firmware Dec 20, 2025
CVE-2025-14299
6.5 medium

The HTTPS server on Tapo C200 V3 does not properly validate the Content-Length header, which can lead to an integer overflow. An unauthenticated attacker on the same local network segment can send crafted HTTPS requests to trigger excessive memory allocation, causing the device to crash and resultin

Tapo C200 Firmware Dec 20, 2025
CVE-2025-14738
7.5 high

Improper authentication vulnerability in TP-Link WA850RE (httpd modules) allows unauthenticated attackers to download the configuration file.This issue affects: ≤ WA850RE V2_160527, ≤ WA850RE V3_160922.

Tl-Wa850Re Firmware Dec 18, 2025
CVE-2025-14737
8.0 high

Command Injection vulnerability in TP-Link WA850RE (httpd modules) allows authenticated adjacent attacker to inject arbitrary commands.This issue affects: ≤ WA850RE V2_160527, ≤ WA850RE V3_160922.

Tl-Wa850Re Firmware Dec 18, 2025