CyberRota Analysis
AI-GeneratedA stack-based buffer overflow vulnerability exists in the setIpQosRules function of the TOTOLINK A800R's firewall component, allowing remote attackers to manipulate the Comment argument. Successful exploitation could lead to arbitrary code execution, potentially compromising the device's integrity and security. Organizations using this router should prioritize patching or mitigating this vulnerability to prevent potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A security flaw has been discovered in TOTOLINK A800R 4.1.2cu.5137_B20200730. The impacted element is the function setIpQosRules of the file /cgi-bin/cstecgi.cgi of the component firewall.so. The manipulation of the argument Comment results in stack-based buffer overflow. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.