Impact
A null pointer dereference (CWE-476) in the RTSP service causes the service to crash and the device to reboot when a specially crafted request is received from a nearby attacker. The resulting denial of service interrupts live video streaming and renders the camera unusable until it restarts.
Affected Systems
TP-Link Systems Inc. Tapo C100 version 5 and Tapo C101 version 5 are affected. The vulnerability exists in devices running firmware v5 on both models and only applies to local‑network traffic targeting the RTSP service.
Risk and Exploitability
The CVSS score of 7.1 indicates high severity. The EPSS score is not available, and the vulnerability is not listed in the CISA KEV catalog. Exploitation requires an attacker to send crafted packets to the RTSP port from the local network; no privileged access or public exposure is needed. The impact is a temporary denial of service for camera streaming, which could impact security monitoring or surveillance workflows.
OpenCVE Enrichment