CVE-2026-34123Disclosure

LOWCVSS 7.0 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

On Tapo C520WS v2, restricted accounts (for example, hub users) are intended to execute only a limited set of low‑sensitivity operations. Due to a logic flaw in the device’s API authorization mechanism, an attacker can craft requests that leverage legitimate “method mapping” behavior to bypass whitelist restrictions, allowing restricted operations to be masked as permitted requests and executed. Successful exploitation may allow an attacker (with access to a restricted account) to execute unauthorized sensitive operations.  Depending on the operation invoked, impact could include device resets, unintended configuration changes, or disruption of normal operation, leading to loss of availability and integrity of the device.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-287

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-04-03); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-04-03: 1Mentions · 2026-06-19: 1Patch / Workaround · 2026-04-03: 1Technical Details · 2026-04-03: 104-0306-19
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-031
Disclosure1
2026-06-191
General1
Full discourse2 posts
  • CERT-PY@CERTpy
    General

    ⚠️ Vulnerabilidades en productos TP-Link ❗ CVE-2026-8714 ❗ CVE-2026-34123 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-tp-link-6/ https://t.co/mNzGXJqEOt

    Post summary

    The tweet simply lists two CVE identifiers for TP‑Link products and provides a link for more information, but offers no PoC, exploit, patch, or technical details.

    00010120
    6.7K followersView on X
  • Syed Aquib@syedaquib77
    Disclosure

    ⚠️ **Vulnerability Alert:** Multiple Buffer Overflow and Auth Bypass Vulnerabilities in TP-Link Tapo C520WS (CVE-2026-34118 through CVE-2026-34124) 📅 **Timeline:** Disclosure: 2026-04-02; Patch: Not stated 🆔 **CVE-2026-34118** | 📊 CVSS: 7.1 (HIGH 🟠) 🆔 **CVE-2026-34119** | 📊 CVSS: 7.1 (HIGH 🟠) 🆔 **CVE-2026-34120** | 📊 CVSS: 7.1 (HIGH 🟠) 🆔 **CVE-2026-34121** | 📊 CVSS: 8.7 (HIGH 🟠) 🆔 **CVE-2026-34122** | 📊 CVSS: 7.1 (HIGH 🟠) 🆔 **CVE-2026-34123** 🆔 **CVE-2026-34124** | 📊 CVSS: 7.1 (HIGH 🟠) 🛠️ **Exploit Maturity:** Not Available 🔧 **Fixed Versions:** Patched by TP-Link (vendor firmware update; specific fixed version not stated) 🫨 **Attack Vectors:** - Adjacent network (same network segment) — crafted HTTP requests - Unauthenticated HTTP request / authorization bypass (CVE-2026-34121) - Streaming/local video request parsing vectors 📝 **Summary:** Multiple heap- and stack-based buffer overflows in Tapo C520WS allow adjacent-network attackers to trigger crashes/DoS and potentially escalate to remote code execution depending on exploitability. Separately, CVE-2026-34121 is an unauthenticated authorization bypass that permits unauthorized configuration changes. 📈 **Impact Scope:** Widely deployed Tapo C520WS devices in homes and businesses — risks include device outages, unauthorized configuration changes, privacy exposure, and potential lateral compromise if memory-corruption flaws are weaponized. 🛡️ **Recommended Actions:** - Apply the TP-Link firmware update immediately when available and verify device versions - Isolate cameras on a dedicated VLAN and restrict HTTP/management access - Block or limit HTTP access from untrusted networks and the internet - Monitor device logs and network traffic for abnormal HTTP requests and repeated crashes - Maintain an inventory of affected devices and consider temporary removal from sensitive networks if you cannot patch 🪢 **Related Resources:** - https://www.tp-link.com/en/support/download/tapo-c520ws/#Firmware-Release-Notes - https://cyberpress.org/critical-tp-link/ 🏷 **Tags:** #Cybersecurity #IoT #TapoC520WS

    Post summary

    The post details multiple buffer overflow and authorization bypass CVEs in TP‑Link Tapo C520WS, providing technical risk details and recommending immediate firmware updates.

    0000066
    277 followersView on X

Explore more