CVE-2026-26732: Buffer Overflow
TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the vpnUser or vpnPassword parameters in the formFilter function.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-26732?
The severity of CVE-2026-26732 is classified as high due to the potential for remote code execution resulting from the stack-based buffer overflow.
How do I fix CVE-2026-26732?
To fix CVE-2026-26732, upgrade the TOTOLINK A3002RU firmware to version 2.1.1-B20211108.1455 or a later version where the vulnerability has been patched.
What are the affected devices for CVE-2026-26732?
CVE-2026-26732 affects the TOTOLINK A3002RU router specifically running firmware version 2.1.1-B20211108.1455.
What type of vulnerability is CVE-2026-26732?
CVE-2026-26732 is a stack-based buffer overflow vulnerability that can be exploited through the vpnUser or vpnPassword parameters.
Can CVE-2026-26732 be exploited remotely?
Yes, CVE-2026-26732 can be exploited remotely, allowing attackers to execute malicious code on vulnerable devices.