An access control issue on TP-LInk Tapo C200 V1 devices allows physically proximate attackers to obtain root access by connecting to the UART pins, interrupting the boot process, and setting an init=/bin/sh value.
References
Link | Resource |
---|---|
https://github.com/hemant70072/Access-control-issue-in-TP-Link-Tapo-C200-V1. | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2023-01-23 07:15
Updated : 2023-01-31 11:10
NVD link : CVE-2022-41505
Mitre link : CVE-2022-41505
JSON object : View
CWE
CWE-862
Missing Authorization
Products Affected
tp-link
- tapo_c200_v1_firmware
- tapo_c200_v1