CVE-2026-7219: Totolink N300RT formIpQoS buffer overflow
A flaw has been found in Totolink N300RT 3.4.0-B20250430. This affects an unknown function of the file /boafrm/formIpQoS. Executing a manipulation of the argument entryname can lead to buffer overflow. The attack may be performed from remote. The exploit has been published and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-7219?
CVE-2026-7219 is considered a high-severity vulnerability due to the potential for remote exploitation leading to a buffer overflow.
How do I fix CVE-2026-7219?
To fix CVE-2026-7219, update the Totolink N300RT firmware to the latest version provided by the vendor.
What systems are affected by CVE-2026-7219?
CVE-2026-7219 specifically affects the Totolink N300RT router running firmware version 3.4.0-B20250430.
Can CVE-2026-7219 be exploited remotely?
Yes, CVE-2026-7219 can be exploited remotely by manipulating the argument entry_name in the affected /boafrm/formIpQoS function.
What type of vulnerability is CVE-2026-7219?
CVE-2026-7219 is classified as a buffer overflow vulnerability, which can lead to unauthorized access or system control.