Disclosure summary
An attacker sending a malformed ONVIF request over LAN to a TP-Link Smart camera device can trigger the vulnerability described here. This report describes a stack buffer overflow,
Source-specific records & product guidance
Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.
Taszk Labs on taszk.io labs · RSS-e71466d34d280ea3021fb422dc44acb5f3d
Open original source · Updated Apr 27, 2026
CVE-2025-8065: TP-Link ONVIF stack buffer overflow
CVE mention in publisher metadata; check the original affected versions.
Original records & references
- NIST NVD record
- CVE Program record
- labs.taszk.io — Publisher advisory
PUBLISHED 2026-04-27T20:00:00-04:00
MODIFIED 2026-04-27T20:00:00-04:00
INGESTED 2026-10-08T12:20:17-04:00