CVE-2026-26731: Totolink a3002ru Firmware

High severity, CVSS 8.8. EPSS: 1.3% chance of exploitation in the next 30 days.

TOTOLINK A3002RU V2.1.1-B20211108.1455 was discovered to contain a stack-based buffer overflow via the routernamer`parameter in the formDnsv6 function.

Affected products

  • Totolink a3002ru Firmware: version 2.1.1-b20211108.1455 only

Published 2026-02-17. Last modified 2026-09-21.