CVE-2023-49515: Medium severity tp-link tapo c200 vulnerability
Insecure Permissiosn vulnerability in TP Link TC70 and C200 WIFI Camera v.3 firmware v.1.3.4 and fixed in v.1.3.11 allows a physically proximate attacker to obtain sensitive information via a connection to the UART pin components.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-49515?
CVE-2023-49515 is classified as a high severity vulnerability due to the potential for unauthorized access to sensitive information.
How do I fix CVE-2023-49515?
To fix CVE-2023-49515, users should upgrade to the firmware version 1.3.11 or later for the affected TP-Link Tapo C200 and TC70 camera models.
Who is affected by CVE-2023-49515?
CVE-2023-49515 affects users of TP-Link Tapo C200 and TC70 cameras running firmware versions 1.3.4, 1.3.9, or 1.1.22.
What kind of information can be exposed due to CVE-2023-49515?
CVE-2023-49515 allows physically proximate attackers to obtain sensitive information through access to the UART pin components.
Can I mitigate CVE-2023-49515 if I cannot upgrade immediately?
While the best course of action is to upgrade, temporarily limiting physical access to the affected devices can help mitigate the risk of CVE-2023-49515.