Loading HuntDB...

GHSA-vcx8-fvxx-m3v6

GitHub Security Advisory

⚠ Unreviewed CRITICAL Has CVE

Advisory Details

TOTOLINK T10_v2 5.9c.5061_B20200511 has a stack-based buffer overflow in setStaticDhcpConfig in /lib/cste_modules/lan.so. Attackers can send crafted data in an MQTT packet, via the comment parameter, to control the return address and execute code.

Related CVEs

Key Information

GHSA ID
GHSA-vcx8-fvxx-m3v6
Published
August 8, 2023 9:30 PM
Last Modified
April 4, 2024 6:43 AM
CVSS Score
9.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 14, 2025 6:31 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.