CVE-2022-41527: Totolink NR1800X Firmware

High severity, CVSS 8.8. EPSS: 1% chance of exploitation in the next 30 days.

TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain an authenticated stack overflow via the pppoeUser parameter in the setOpModeCfg function.

Affected products

  • Totolink NR1800X Firmware: version 9.1.0u.6279_b20210910 only

Published 2022-10-06. Last modified 2026-06-17.