CVE-2026-6157

Severity CVSS v4.0:
HIGH
Type:
CWE-119 Buffer Errors
Publication date:
13/04/2026
Last modified:
13/04/2026

Description

A vulnerability was detected in Totolink A800R 4.1.2cu.5137_B20200730. This impacts the function setAppEasyWizardConfig in the library /lib/cste_modules/app.so. The manipulation of the argument apcliSsid results in buffer overflow. The attack can be executed remotely. The exploit is now public and may be used.