important · Wi-Fi / Edge
A LAN attacker can replay a Tapo camera challenge into an administrative session.
Affects
TP-Link Tapo C120 and C200, Wi-Fi-connected home and small-business security cameras running embedded firmware.
A LAN peer needs only HTTPS reachability, not an existing session; the resulting token reaches configuration, live streams and stored recordings.
Detail and 3 sources
TP-Link identifies fixed firmware, but the fix was not read for a Priority Finding.
Sources
ResearchSecurity Advisory: Multiple Vulnerabilities in Tapo C120 and C200 (CVE-2026-15315 & CVE-2026-15316) | TP-LinkVendorWatch out — TP-Link Tapo Camera vulnerabilities could let hackers spy inside homes, so patch now | TechRadarVendorZero-day flaws in TP-Link security cameras could let hackers eavesdrop on you — but there's a fix | Tom's Guide