Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-75118— http_gdpr_decrypt Pre-Authentication Stack-Based Buffer Overflow

Quick assessment

Affected
TP-Link Systems Inc. TL-MR100 v3.20
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

TL-MR100 V3.20 中的 函数存在一个预认证(pre-authentication)堆栈缓冲溢出漏洞,原因是针对 端点的加密请求缺乏足够的边界检查。能够访问路由器 Web 管理界面的未认证相邻攻击者可以触发内存损坏,并有可能实现任意代码执行。 成功利用该漏洞可在认证之前覆盖 进程堆栈上保存的控制流数据,从而导致服务崩溃或在受影响进程的上下文中实现任意代码执行。

CVSS 8.7 · High
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-75118

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
http_gdpr_decrypt Pre-Authentication Stack-Based Buffer Overflow
Source: CVE Program / CVE List V5
Vulnerability Description
A pre-authentication stack-based buffer overflow vulnerability exists in the http_gdpr_decrypt function of TL-MR100 V3.20 due to insufficient bounds checking of encrypted requests to the /cgi/login endpoint. An adjacent unauthenticated attacker with access to the router's web management interface can trigger memory corruption and potentially achieve arbitrary code execution. Successful exploitation can overwrite saved control-flow data on the httpd process stack prior to authentication, resulting in a service crash or potential arbitrary code execution in the context of the affected process.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Source: CVE Program / CVE List V5
Vulnerability Type
栈缓冲区溢出
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
TP-Link Systems Inc. TL-MR100 v3.20 0 ~ (EU)_1.3.0 Build 260609 -

II. Public POCs for CVE-2026-75118

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-75118

登录查看更多情报信息。

Vendor Advisories for CVE-2026-75118 (1)

Vendor Pages for CVE-2026-75118 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-75118

No comments yet


Leave a comment