Description
TOTOLINK N350RT V9.3.5u.6139_B20201216 was discovered to contain a buffer overflow via the ePort parameter in the function setIpPortFilterRules.
References (1)
Core 1
Core References
Exploit, Third Party Advisory
https://github.com/luckysmallbird/Totolink-N350RT-Vulnerability/blob/main/1-ePort.md
Scores
CVSS v3
9.8
EPSS
0.0023
EPSS Percentile
45.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
yes
Technical Impact
total
Details
CWE
CWE-120
Status
published
Products (1)
totolink/n350rt_firmware
9.3.5u.6139_b20201216
Published
Jul 17, 2025
Tracked Since
Feb 18, 2026