CVSS
8.8
CVSS v3.1
EPSS
N/A
Exploit Prediction Score
Published
August 14, 2026
Exploitability
No EPSS data available
A security flaw has been discovered in TOTOLINK A800R 4.1.2cu.5137_B20200730. The impacted element is the function setIpQosRules of the file /cgi-bin/cstecgi.cgi of the component firewall.so. The manipulation of the argument Comment results in stack-based buffer overflow. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.
No package data available.
Publisher and database URLs for this record (shown for attribution; reading stays in Bugflare).