Unauthenticated Authorization Bypass in TP-Link Tapo C325WB V2
CVE-2026-105672

8.7HIGH

Key Information:

Vendor
CVE Published:
8 October 2026

What is CVE-2026-105672?

The TP-Link Tapo C325WB V2 contains a vulnerability that allows unauthorized access through its HTTPS JSON API dispatcher on TCP port 443. An attacker on the same network can exploit this issue by appending an onboarding-scoped object to a JSON request, thereby bypassing session verification. This could enable the attacker to gain access to live video and audio feeds, modify various device settings, and retrieve sensitive device information without needing proper authentication.

Affected Version(s)

Tapo C325WB v2 0

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Andrey Charikov, Check Point Research
.