CVE-2022-41520: High severity TOTOLINK Nr1800x Firmware vulnerability
Published Oct 6, 2022
·Updated
TOTOLINK NR1800X V9.1.0u.6279B20210910 was discovered to contain an authenticated stack overflow via the File parameter in the UploadCustomModule function.
Affected Software
4 affected components
TOTOLINK Nr1800x Firmware=9.1.0u.6279_b20210910
TOTOLINK NR1800X
All of the following
TOTOLINK Nr1800x Firmware=9.1.0u.6279_b20210910
TOTOLINK NR1800X
Event History
Oct 6, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for TOTOLINK NR1800X?
The vulnerability ID for TOTOLINK NR1800X is CVE-2022-41520.
2
What is the severity of CVE-2022-41520?
The severity of CVE-2022-41520 is high (8.8).
3
What is the affected software version of CVE-2022-41520?
The affected software version of CVE-2022-41520 is TOTOLINK NR1800X firmware version 9.1.0u.6279_B20210910.
4
How does CVE-2022-41520 work?
CVE-2022-41520 works by exploiting an authenticated stack overflow via the File parameter in the UploadCustomModule function of TOTOLINK NR1800X.
5
Is TOTOLINK NR1800X still vulnerable to CVE-2022-41520?
No, TOTOLINK NR1800X is not vulnerable to CVE-2022-41520 as it has been marked as non-vulnerable.