CVE-2022-36462: High severity totolink a3700r firmware vulnerability
TOTOLINK A3700R V9.1.2u.6134B20201202 was discovered to contain a stack overflow via the lang parameter in the function setLanguageCfg.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for TOTOLINK A3700R stack overflow via the lang parameter?
The vulnerability ID for the TOTOLINK A3700R stack overflow via the lang parameter is CVE-2022-36462.
What is the severity of CVE-2022-36462?
The severity of CVE-2022-36462 is high with a CVSS score of 7.8.
How does TOTOLINK A3700R V9.1.2u.6134_B20201202 get affected by CVE-2022-36462?
TOTOLINK A3700R V9.1.2u.6134_B20201202 is affected by CVE-2022-36462 due to the stack overflow vulnerability in the setLanguageCfg function via the lang parameter.
Is TOTOLINK A3700R vulnerable to this stack overflow vulnerability?
Yes, TOTOLINK A3700R V9.1.2u.6134_B20201202 is vulnerable to the stack overflow vulnerability via the lang parameter.
How can I fix the stack overflow vulnerability (CVE-2022-36462) in TOTOLINK A3700R?
To fix the stack overflow vulnerability (CVE-2022-36462) in TOTOLINK A3700R, it is recommended to update to a patched version of the firmware provided by the manufacturer.