Improper Boundary Validation in Tapo P110 Smart Wi-Fi Plug by TP-Link
CVE-2026-15314

7.1HIGH

Key Information:

Status
Vendor
CVE Published:
4 August 2026

What is CVE-2026-15314?

The Tapo P110 v1 smart Wi-Fi Plug by TP-Link is susceptible to an improper boundary validation vulnerability. This issue arises during the processing of authenticated HTTP request bodies due to inadequate input validation before memory copy operations. As a result, a buffer overflow condition may occur, potentially leading to the crashing of the web service process. Exploitation of this vulnerability can result in service interruptions, including denial-of-service conditions where the device stops responding or restarts unexpectedly.

Affected Version(s)

P110 v1 0

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.