Authentication Vulnerability in TOTOLINK N600R Router
CVE-2026-82555
Key Information:
Badges
What is CVE-2026-82555?
A significant vulnerability exists within the TOTOLINK N600R Router, specifically in the loginAuth function of the Authentication Handler component. This flaw arises from the use of insufficiently random values, making the system susceptible to remote exploitation. Attackers could leverage this vulnerability to potentially gain unauthorized access or manipulate the device. The issue manifests under complex conditions, emphasizing the necessity for robust security measures to mitigate risks.
Affected Version(s)
N600R 4.3.0cu.7866_B20220506
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
