Vulnerability Intelligence Report
Unauthenticated Administrative Authentication Bypass via device_confirm Replay in TP-Link Tapo C120 and C200
CVE-2026-15315
Tapo C120 v1 and C200 v5 contain an improper authentication vulnerability within the login authentication verification module. An attacker on the local network can exploit weaknesses in challenge parameter validation to bypass normal authentication controls and obtain administrative session tokens. Successful exploitation may allow an attacker to subsequently execute privileged management actions, enable unauthorized administrative access and temporary disruption of device services, resulting in a denial-of-service (DoS) condition.
Authentication Bypass
No Active Exploit Signals
CVSS Base Score
8.7
HIGH
EPSS Probability:0.24%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-287 ↗CWE-287 Improper Authentication
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| TP-Link Systems Inc. | Tapo C200 v5 | 0 < V5_1.4.6 Build 260709 Rel.27675n (affected) |
| TP-Link Systems Inc | Tapo C120 v1 | 0 < 1.9.3 Build 260521 (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | TP-Link Systems Inc. · Vendor · USA |
| Reserved | 2026-07-09T17:55:09 |
| Published | 2026-08-18T21:24:59 |
| Last Updated | 2026-08-27T23:08:42 |
Community Chatter & Buzz