CVE-2026-8714

Severity CVSS v4.0:
HIGH
Type:
CWE-20 Input Validation
Publication date:
05/06/2026
Last modified:
05/06/2026

Description

A denial-of-service<br /> vulnerability exists in the RTSP server component of TP-Link Tapo C520WS v2 due to improper handling of<br /> syntactically invalid input.  Crafted inputs<br /> can trigger a processing error, causing the RTSP service to enter non-responsive<br /> state.<br /> <br /> <br /> <br /> <br /> <br /> Successful<br /> exploitation may cause the RTSP in a denial-of-service condition.