CVE-2021-4045: TP-LINK Tapo C200 remote code execution vulnerability
TP-Link Tapo C200 IP camera, on its 1.1.15 firmware version and below, is affected by an unauthenticated RCE vulnerability, present in the uhttpd binary running by default as root. The exploitation of this vulnerability allows an attacker to take full control of the camera.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for TP-Link Tapo C200 IP camera?
The vulnerability ID for TP-Link Tapo C200 IP camera is CVE-2021-4045.
What is the severity of CVE-2021-4045?
The severity of CVE-2021-4045 is critical with a CVSS score of 9.8.
How does CVE-2021-4045 affect TP-Link Tapo C200 IP camera?
CVE-2021-4045 allows an attacker to exploit an unauthenticated RCE vulnerability in TP-Link Tapo C200 IP camera, potentially gaining full control of the camera.
Which firmware versions of TP-Link Tapo C200 IP camera are affected by CVE-2021-4045?
TP-Link Tapo C200 IP camera firmware versions up to 1.1.15 are affected by CVE-2021-4045.
How can I fix CVE-2021-4045 vulnerability in TP-Link Tapo C200 IP camera?
To fix CVE-2021-4045 vulnerability, update the firmware of TP-Link Tapo C200 IP camera to a version higher than 1.1.15.