Impact
A stack-based buffer overflow in the setSystemConfig function of the cstecgi.cgi CGI handler is triggered by manipulating the Hostname argument. The overflow is exploitable remotely and can be used to overwrite the CPU return address, leading to arbitrary code execution on the device and a full compromise of the router's operating system.
Affected Systems
Totolink N600R routers running firmware 4.3.0cu.7647_B20210106 are affected. These are consumer-grade wireless routers that expose the vulnerable CGI endpoint over the public Internet.
Risk and Exploitability
The CVSS score of 10 indicates critical severity. There is no EPSS score listed, but the vulnerability is publicly disclosed and not yet in the CISA KEV catalog, implying a still high risk of exploitation. Remote attackers can trigger the overflow from any internet location and execute code on the router without prior authentication.
OpenCVE Enrichment