Vulnerability Description
A weakness has been identified in Totolink A3002MU B20211125.1046. Affected by this vulnerability is the function sub_410188 of the file /boafrm/formWlanSetup of the component HTTP Request Handler. This manipulation of the argument wan-url causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be used for attacks.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://github.com/zhuchan770/vulnerability/blob/main/A3002MU/formWlanSetup/ToTo
- https://vuldb.com/submit/797452
- https://vuldb.com/vuln/357116
- https://vuldb.com/vuln/357116/cti
- https://www.totolink.net/
FAQ
What is CVE-2026-6194?
CVE-2026-6194 is a vulnerability with a CVSS score of 8.8 (HIGH). A weakness has been identified in Totolink A3002MU B20211125.1046. Affected by this vulnerability is the function sub_410188 of the file /boafrm/formWlanSetup of the component HTTP Request Handler. Th...
How severe is CVE-2026-6194?
CVE-2026-6194 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-6194?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.