CVE-2024-33820: Totolink a3002r Firmware

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

Totolink AC1200 Wireless Dual Band Gigabit Router A3002R_V4 Firmware V4.0.0-B20230531.1404 is vulnerable to Buffer Overflow via the formWlEncrypt function of the boa server. Specifically, they exploit the length of the wlan_ssid field triggers the overflow.

Affected products

  • Totolink a3002r Firmware: version 4.0.0-b20230531.1404 only

Published 2024-05-01. Last modified 2026-06-17.