CyberRota Analysis
AI-GeneratedA critical buffer overflow vulnerability exists in the Totolink A3002MU router, specifically within the formNewSchedule function of the boa component, which can be exploited remotely through manipulation of the submit-url argument. Successful exploitation could allow attackers to execute arbitrary code, potentially compromising the device and the network it is connected to. Organizations using this router model should prioritize immediate patching or mitigation efforts to safeguard against potential attacks, as the exploit is now publicly available.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A vulnerability was detected in Totolink A3002MU Hh-B20211125.1046. Impacted is the function formNewSchedule of the file /boafrm/formNewSchedule of the component boa. The manipulation of the argument submit-url results in buffer overflow. The attack may be performed from remote. The exploit is now public and may be used.