An access control issue on TP-LInk Tapo C200 V1 devices allows physically proximate attackers to obtain root access by connecting to the UART pins, interrupting the boot process, and setting an init=/bin/sh value.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/hemant70072/Access-control-issue-in-TP-Link-Tapo-C200-V1. | Exploit Third Party Advisory | 
| https://github.com/hemant70072/Access-control-issue-in-TP-Link-Tapo-C200-V1. | Exploit Third Party Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
            
            
 
  | 
    
History
                    03 Apr 2025, 15:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-306 | 
21 Nov 2024, 07:23
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://github.com/hemant70072/Access-control-issue-in-TP-Link-Tapo-C200-V1. - Exploit, Third Party Advisory | |
| Summary | 
        
        
  | 
08 Aug 2023, 14:21
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2023-01-23 15:15
Updated : 2025-04-03 15:15
NVD link : CVE-2022-41505
Mitre link : CVE-2022-41505
CVE.ORG link : CVE-2022-41505
JSON object : View
Products Affected
                tp-link
- tapo_c200_v1_firmware
 - tapo_c200_v1
 
CWE
                