CVE detail
CVE-2026-19846
A vulnerability was identified in TOTOLINK A800R 4.1.2cu.5137_B20200730. This impacts the function setUrlFilterRules of the file /cgi-bin/cstecgi.cgi of the component firewall.so. The manipulation of the argument url leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit is publicly available and might be used.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 19.5 · diversity 11.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 6
- within the 30d window
- Peak daily
- 6
- highest bucket
Evidence
Source links by recency
6 source links · newest first
- https://www.totolink.net/www.totolink.net
No excerpt available.
Productwww.totolink.netAug 14, 2026, 6:17 PM - https://vuldb.com/vuln/389982/ctivuldb.com
No excerpt available.
Exploitvuldb.comAug 14, 2026, 6:17 PM - https://vuldb.com/vuln/389982vuldb.com
No excerpt available.
Exploitvuldb.comAug 14, 2026, 6:17 PM - https://vuldb.com/submit/869456vuldb.com
No excerpt available.
Exploitvuldb.comAug 14, 2026, 6:17 PM - https://vuldb.com/cve/CVE-2026-19846vuldb.com
No excerpt available.
Exploitvuldb.comAug 14, 2026, 6:17 PM No excerpt available.
Exploitgithub.comAug 14, 2026, 6:17 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-76008CVSS 10.0 · Critical
A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the file /cgi-bin/mbox-config of the component URI Parameter Parsing. This manipul…
- CVE-2026-76004CVSS 8.6 · High
A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/aspApBasicConfi…
- CVE-2026-76003CVSS 8.6 · High
A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argumen…
- CVE-2026-75976CVSS 8.6 · High
A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argu…
- CVE-2026-75877CVSS 8.6 · High
A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websChec…
- CVE-2026-75784CVSS 9.3 · Critical
A vulnerability was detected in TRENDnet TEW-WLC100 1v2.07b01. Affected by this issue is the function FUN_0040da4c of the file /usr/nginx/sbin/nginx of the component HTTP Header H…