在 Totolink A3002MU 固件版本 Hh-B20211125.1046 中发现了一个安全漏洞。该漏洞位于文件 /boafrm/formSchedule 中的 formSchedule 函数。攻击者通过操控参数 webpage 可触发缓冲区溢出漏洞。该攻击可远程实施,且利用代码已公开,可能被攻击者利用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-93740 | 10.0 CRITICAL | Totolink A3002MU formWlEncrypt buffer overflow |
| CVE-2026-93739 | 9.9 CRITICAL | Totolink A3002MU formWlAc buffer overflow |
No comments yet