CVE-2022-41526: High severity TOTOLINK Nr1800x Firmware vulnerability
Published Oct 6, 2022
·Updated
TOTOLINK NR1800X V9.1.0u.6279B20210910 was discovered to contain an authenticated stack overflow via the ip parameter in the setDiagnosisCfg function.
Affected Software
4 affected components
TOTOLINK Nr1800x Firmware=9.1.0u.6279_b20210910
TOTOLINK NR1800X
All of the following
TOTOLINK Nr1800x Firmware=9.1.0u.6279_b20210910
TOTOLINK NR1800X
Event History
Oct 6, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-41526?
CVE-2022-41526 is a vulnerability found in TOTOLINK NR1800X V9.1.0u.6279_B20210910 that allows an authenticated stack overflow via the ip parameter in the setDiagnosisCfg function.
2
How severe is CVE-2022-41526?
CVE-2022-41526 has a severity score of 8.8 (high).
3
Which software versions are affected by CVE-2022-41526?
CVE-2022-41526 affects TOTOLINK NR1800X V9.1.0u.6279_B20210910.
4
How can CVE-2022-41526 be exploited?
CVE-2022-41526 can be exploited by an authenticated user through the ip parameter in the setDiagnosisCfg function.
5
Is TOTOLINK NR1800X vulnerable to CVE-2022-41526?
No, TOTOLINK NR1800X is not vulnerable to CVE-2022-41526.