CVE-2022-41521: High severity TOTOLINK Nr1800x Firmware vulnerability
Published Oct 6, 2022
·Updated
TOTOLINK NR1800X V9.1.0u.6279B20210910 was discovered to contain an authenticated stack overflow via the sPort/ePort parameter in the setIpPortFilterRules function.
Affected Software
4 affected components
TOTOLINK Nr1800x Firmware=9.1.0u.6279_b20210910
TOTOLINK NR1800X
All of the following
TOTOLINK Nr1800x Firmware=9.1.0u.6279_b20210910
TOTOLINK NR1800X
Event History
Oct 6, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-41521?
CVE-2022-41521 is a vulnerability in TOTOLINK NR1800X V9.1.0u.6279_B20210910 that allows an authenticated stack overflow.
2
How does CVE-2022-41521 occur?
CVE-2022-41521 occurs through the sPort/ePort parameter in the setIpPortFilterRules function.
3
Which software versions are affected by CVE-2022-41521?
TOTOLINK NR1800X V9.1.0u.6279_B20210910 is affected by CVE-2022-41521.
4
What is the severity of CVE-2022-41521?
CVE-2022-41521 has a severity rating of 8.8 (high).
5
How can CVE-2022-41521 be mitigated?
Currently, there is no available mitigation for CVE-2022-41521. It is recommended to update to a patched version of the software, if available.