First published: Thu Aug 25 2022(Updated: )
TOTOLINK A3700R V9.1.2u.6134_B20201202 was discovered to contain a stack overflow via the ip parameter in the function setDiagnosisCfg.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink A3700r Firmware | =9.1.2u.6134_b20201202 | |
TOTOLINK A3700R |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36466 is a vulnerability discovered in TOTOLINK A3700R V9.1.2u.6134_B20201202 firmware that allows for a stack overflow through the ip parameter in the setDiagnosisCfg function.
CVE-2022-36466 has a severity value of 7.8, which is considered high.
CVE-2022-36466 affects TOTOLINK A3700R V9.1.2u.6134_B20201202 firmware by causing a stack overflow when the ip parameter is used in the setDiagnosisCfg function.
Yes, TOTOLINK A3700R V9.1.2u.6134_B20201202 firmware is vulnerable to CVE-2022-36466.
To fix the CVE-2022-36466 vulnerability in TOTOLINK A3700R, it is recommended to update the firmware to a non-vulnerable version provided by the manufacturer.