CVE-2026-34121

Severity CVSS v4.0:
HIGH
Type:
CWE-287 Authentication Issues
Publication date:
02/04/2026
Last modified:
06/04/2026

Description

An authentication bypass vulnerability within the HTTP handling of the DS configuration service in TP-Link Tapo C520WS v2.6 was identified, due to inconsistent parsing and authorization logic in JSON requests during authentication check. An unauthenticated attacker can append an authentication-exempt action to a request containing privileged DS do actions, bypassing authorization checks.<br /> <br /> Successful exploitation allows unauthenticated execution of restricted configuration actions, which may result in unauthorized modification of device state.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tp-link:tapo_c520ws_firmware:*:*:*:*:*:*:*:* 1.2.4 (excluding)
cpe:2.3:h:tp-link:tapo_c520ws:2.6:*:*:*:*:*:*:*