Totolink · N300Rh · CVE-2026-10187
**Name of the Vulnerable Software and Affected Versions**
Totolink N300RH version 6.1c.1353 B20190305
**Description**
A stack-based buffer overflow exists in the Web Management Interface component within the `wireless.so` file. The issue occurs in the `setWiFiBasicConfig()` function when the `KeyStr` argument is manipulated. This flaw allows a remote attacker to execute arbitrary code.
**Recommendations**
Update to the latest firmware as advised by the vendor.
As a temporary mitigation, disable remote management to reduce exposure.