Vulnerability Description
TP-LINK NC200 devices through 2.1.10 build 200401, NC210 devices through 1.0.10 build 200401, NC220 devices through 1.3.1 build 200401, NC230 devices through 1.3.1 build 200401, NC250 devices through 1.3.1 build 200401, NC260 devices through 1.5.3 build_200401, and NC450 devices through 1.5.4 build 200401 have a Buffer Overflow
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tp-Link | Nc200 Firmware | <= 2.1.10 |
| Tp-Link | Nc200 | - |
| Tp-Link | Nc210 Firmware | <= 1.0.10 |
| Tp-Link | Nc210 | - |
| Tp-Link | Nc220 Firmware | <= 1.3.1 |
| Tp-Link | Nc220 | - |
| Tp-Link | Nc230 Firmware | <= 1.3.1 |
| Tp-Link | Nc230 | - |
| Tp-Link | Nc250 Firmware | <= 1.3.1 |
| Tp-Link | Nc250 | - |
| Tp-Link | Nc260 Firmware | <= 1.5.3 |
| Tp-Link | Nc260 | - |
| Tp-Link | Nc450 Firmware | <= 1.5.4 |
| Tp-Link | Nc450 | - |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/158115/TP-LINK-Cloud-Cameras-NCXXX-Stack-OvExploitThird Party AdvisoryVDB Entry
- https://www.tp-link.com/us/securityVendor Advisory
- http://packetstormsecurity.com/files/158115/TP-LINK-Cloud-Cameras-NCXXX-Stack-OvExploitThird Party AdvisoryVDB Entry
- https://www.tp-link.com/us/securityVendor Advisory
FAQ
What is CVE-2020-13224?
CVE-2020-13224 is a vulnerability with a CVSS score of 8.8 (HIGH). TP-LINK NC200 devices through 2.1.10 build 200401, NC210 devices through 1.0.10 build 200401, NC220 devices through 1.3.1 build 200401, NC230 devices through 1.3.1 build 200401, NC250 devices through ...
How severe is CVE-2020-13224?
CVE-2020-13224 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-13224?
Check the references section above for vendor advisories and patch information. Affected products include: Tp-Link Nc200 Firmware, Tp-Link Nc200, Tp-Link Nc210 Firmware, Tp-Link Nc210, Tp-Link Nc220 Firmware.