A vulnerability was identified in Totolink LR350 9.3.5u.6369_B20220309. This affects the function setWiFiEasyCfg of the file /cgi-bin/cstecgi.cgi. Such manipulation of the argument ssid leads to buffer overflow. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
Metrics
Affected Vendors & Products
References
History
Mon, 19 Jan 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in Totolink LR350 9.3.5u.6369_B20220309. This affects the function setWiFiEasyCfg of the file /cgi-bin/cstecgi.cgi. Such manipulation of the argument ssid leads to buffer overflow. It is possible to launch the attack remotely. The exploit is publicly available and might be used. | |
| Title | Totolink LR350 cstecgi.cgi setWiFiEasyCfg buffer overflow | |
| Weaknesses | CWE-119 CWE-120 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-01-19T14:02:10.111Z
Reserved: 2026-01-18T20:19:59.156Z
Link: CVE-2026-1157
No data.
Status : Received
Published: 2026-01-19T14:15:50.140
Modified: 2026-01-19T14:15:50.140
Link: CVE-2026-1157
No data.
OpenCVE Enrichment
No data.