CVE-2025-8065: Remote Code Execution via Stack-based Buffer Overflow in ONVIF SOAP Parser in TP-Link Tapo C200 and C520WS
A stack-based buffer overflow vulnerability was identified in the ONVIF SOAP XML Parser in Tapo C200 v3 and C520WS v2.6. When processing XML tags with namespace prefixes, the parser fails to validate the prefix length before copying it to a fixed-size stack buffer. It allowed a crafted SOAP request with an oversized namespace prefix to cause memory corruption in stack.
An unauthenticated attacker on the same local network may exploit this flaw to enable remote code execution with elevated privileges, leading to full compromise of the device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8065?
CVE-2025-8065 is classified as a critical vulnerability due to its potential to cause denial-of-service (DoS) attacks.
How do I fix CVE-2025-8065?
To mitigate CVE-2025-8065, update the firmware of your TP-Link Tapo C200 to the latest version provided by the vendor.
Who can exploit CVE-2025-8065?
CVE-2025-8065 can be exploited by unauthenticated attackers on the same local network segment.
What is the impact of CVE-2025-8065 on my device?
CVE-2025-8065 can lead to a buffer overflow, causing your Tapo C200 device to crash and become unavailable.
How can I prevent attacks related to CVE-2025-8065?
Prevent attacks related to CVE-2025-8065 by ensuring your device is on a secure network and regularly updating its firmware.