CVE-2026-15316
Gravedad CVSS v4.0:
ALTA
Tipo:
CWE-20
Validación incorrecta de entrada
Fecha de publicación:
18/08/2026
Última modificación:
18/08/2026
Descripción
*** Pendiente de traducción *** An improper input<br />
validation vulnerability in the configuration service for processing encrypted<br />
credential data has been identified in Tapo C200 v5. An attacker can send oversized crypted<br />
ciphertext values that may trigger exception handling failures, due to insufficient<br />
validation, causing the affected device to crash or restart.<br />
<br />
<br />
<br />
<br />
<br />
Successful<br />
exploitation may temporarily disrupt HTTPS management and monitoring<br />
functionality, resulting in a denial-of-service (DoS) condition until the<br />
service recovers.
Impacto
Puntuación base 4.0
7.10
Gravedad 4.0
ALTA



