CVE-2026-31027
EUVD-2026-1791301.04.2026, 16:23
TOTOlink A3600R v5.9c.4959 contains a buffer overflow vulnerability in the setAppEasyWizardConfig interface of /lib/cste_modules/app.so. The vulnerability occurs because the rootSsid parameter is not properly validated for length, allowing remote attackers to trigger a buffer overflow, potentially leading to arbitrary code execution or denial of service.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| totolink | a3600r_firmware | 5.9c.4959:c.4959 |
𝑥
= Vulnerable software versions