CVE-2026-75618: TP-Link Tapo c100 Firmware

Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Tapo C100/C101 V5 contains a null pointer dereference vulnerability in the RTSP service. An attacker on the local network can send specially crafted requests that cause the service to dereference an invalid pointer, resulting in a service crash and device reboot. Successful exploitation can disrupt live video streaming functionality and cause a temporary denial-of-service condition.

Affected products

  • TP-Link Tapo c100 Firmware: before 1.5.4 (fixed in 1.5.4)
  • TP-Link Tapo c101 Firmware: before 1.5.4 (fixed in 1.5.4)

Published 2026-08-19. Last modified 2026-09-04.