On December 11th, 2022, FortiGuard Labs observed a significant spike in IPS signature “TP-Link.Tapo.C200.IP.Camera.Command.Injection”. The IPS signature is for CVE-2021-4045 and detects an attack to exploit a Command Injection vulnerability in TP-Link Tapo C200 IP Camera. Successful exploitation of the vulnerability allows remote attackers to gain control of vulnerable devices.Why is this Significant?This is significant due to the detection spike in our IPS signature, which indicates attackers are attempting to exploit TP-Link Tapo C200 IP Camera devices vulnerable to CVE-2021-4045. Also, proof-of-concept (PoC) code for CVE-2021-4045 is readily available. As such, firmware updates need to be applied to the vulnerable devices as soon as possible.What is CVE-2021-4045?CVE-2021-4045 is a Command Injection vulnerability in TP-Link Tapo C200 IP Camera. Successful exploitation of the vulnerability allows remote attackers to gain control of vulnerable devices. CVE-2021-4045 impacts Tapo C200 version 1.15 and below and has a CVSS score of 9.8. How Widespread is the Attack?Based on the telemetry collected by FortiGuard Labs last 24 hours, 24.55% of the detected exploit attempts came from unidentified countries, followed by Japan (22.48%) and the United States (13.95%).Top 10 Countries where “TP-Link.Tapo.C200.IP.Camera.Command.Injection” was Detected last 24 hours
Country
Percentage
Unknown
24.55%
Japan
22.48%
United States
13.95%
Italy
5.43%
Austria
3.88%
Switzerland
2.84%
Netherlands
2.58%
Germany
2.33%
Belgium
2.07%
Canada
2.07%
Has the Vendor Released a Patch for CVE-2021-4045?Yes, the vendor released firmware with a fix.
More Stories
nodejs-bash-language-server-5.6.0-2.fc42 nodejs-pnpm-10.9.0-1.fc42
FEDORA-2025-69a1acbbc0 Packages in this update: nodejs-bash-language-server-5.6.0-2.fc42 nodejs-pnpm-10.9.0-1.fc42 Update description: Update pnpm to version 10.9.0 to fix CVE-2024-47829 and nodejs-bash-language-server to...
valkey-8.0.3-1.fc41
FEDORA-2025-d191ee2f9a Packages in this update: valkey-8.0.3-1.fc41 Update description: Valkey 8.0.3 - Released Wed 23 Apr 2025 Upgrade urgency SECURITY: This...
valkey-8.0.3-1.el9
FEDORA-EPEL-2025-eb3543f6b8 Packages in this update: valkey-8.0.3-1.el9 Update description: Valkey 8.0.3 - Released Wed 23 Apr 2025 Upgrade urgency SECURITY: This...
valkey-8.0.3-1.fc42
FEDORA-2025-2ccc1f4ed9 Packages in this update: valkey-8.0.3-1.fc42 Update description: Valkey 8.0.3 - Released Wed 23 Apr 2025 Upgrade urgency SECURITY: This...
valkey-8.0.3-1.fc40
FEDORA-2025-59ebc165fc Packages in this update: valkey-8.0.3-1.fc40 Update description: Valkey 8.0.3 - Released Wed 23 Apr 2025 Upgrade urgency SECURITY: This...
valkey-8.0.3-1.el8
FEDORA-EPEL-2025-a73f52377d Packages in this update: valkey-8.0.3-1.el8 Update description: Valkey 8.0.3 - Released Wed 23 Apr 2025 Upgrade urgency SECURITY: This...