PT-2026-35650 · Totolink · Rt-N300

Xyhackr

·

Published

2026-04-28

·

Updated

2026-04-28

·

CVE-2026-7218

CVSS v3.1

7.2

High

AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
A vulnerability was detected in Totolink N300RT 3.4.0-B20250430. The impacted element is the function is cmd string valid of the file /boafrm/formWsc of the component libapmib.so. Performing a manipulation of the argument localPin results in buffer overflow. The attack is possible to be carried out remotely. The exploit is now public and may be used.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-7218

Affected Products

Rt-N300