Unauthenticated Authorization Bypass in TP-Link Tapo C325WB V2
CVE-2026-105672
8.7HIGH
What is CVE-2026-105672?
The TP-Link Tapo C325WB V2 contains a vulnerability that allows unauthorized access through its HTTPS JSON API dispatcher on TCP port 443. An attacker on the same network can exploit this issue by appending an onboarding-scoped object to a JSON request, thereby bypassing session verification. This could enable the attacker to gain access to live video and audio feeds, modify various device settings, and retrieve sensitive device information without needing proper authentication.
Affected Version(s)
Tapo C325WB v2 0
References
CVSS V4
Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Andrey Charikov, Check Point Research
