A vulnerability was detected in Totolink A800R 4.1.2cu.5137_B20200730. This impacts the function setAppEasyWizardConfig in the library /lib/cste_modules/app.so. The manipulation of the argument apcliSsid results in buffer overflow. The attack can be executed remotely. The exploit is now public and may be used.
Metrics
Affected Vendors & Products
References
History
Mon, 13 Apr 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in Totolink A800R 4.1.2cu.5137_B20200730. This impacts the function setAppEasyWizardConfig in the library /lib/cste_modules/app.so. The manipulation of the argument apcliSsid results in buffer overflow. The attack can be executed remotely. The exploit is now public and may be used. | |
| Title | Totolink A800R app.so setAppEasyWizardConfig buffer overflow | |
| First Time appeared |
Totolink
Totolink a800r Firmware |
|
| Weaknesses | CWE-119 CWE-120 |
|
| CPEs | cpe:2.3:o:totolink:a800r_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Totolink
Totolink a800r Firmware |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-13T03:45:34.313Z
Updated: 2026-04-13T03:45:34.313Z
Reserved: 2026-04-12T18:06:21.026Z
Link: CVE-2026-6157
No data.
Status : Received
Published: 2026-04-13T04:16:16.817
Modified: 2026-04-13T04:16:16.817
Link: CVE-2026-6157
No data.