CVE-2026-7748Disclosure

LOWCVSS 7.4 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A weakness has been identified in Totolink N300RH 3.2.4-B20220812. Affected by this issue is the function setUpgradeFW of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. Executing a manipulation of the argument FileName can lead to buffer overflow. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 2 mentions (2026-05-04); latest day: 1
  • 3 total mentions across 2 days

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-05-04: 2Mentions · 2026-05-24: 1Patch / Workaround · 2026-05-24: 1Technical Details · 2026-05-04: 1Technical Details · 2026-05-24: 105-0405-24
Signal classification2 categories
Disclosure
266.7%
Patch
133.3%
Referenced assets2 URLs
By indicator
Classification over time
DateTotalLabels
2026-05-042
Disclosure2
2026-05-241
Patch1
Full discourse3 posts
  • DFIR Lab@DFIR_Lab
    Patch

    🚨 HIGH: CVE-2026-7748 (CVSS 8.8) - Buffer overflow in Totolink N300RH router v3.2.4. Remote exploit available. Affects setUpgradeFW function via /cgi-bin/cstecgi[.]cgi. Patch immediately. #CVE #Vulnerability #PatchNow https://t.co/pKSCEjw7qo

    Post summary

    The tweet alerts that CVE‑2026‑7748, a buffer‑overflow vulnerability in Totolink N300RH routers, is high severity with an available remote exploit, and urges users to patch immediately.

    0000080
    30 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-7748 A weakness has been identified in Totolink N300RH 3.2.4-B20220812. Affected by this issue is the function setUpgradeFW of the file /cgi-bin/cstecgi.cgi of the component… https://www.cve.org/CVERecord?id=CVE-2026-7748 ----- Traducción: CVE-2026-7748 Se … http://infoflow.cloud`

    Post summary

    A new weakness (CVE‑2026‑7748) has been identified in Totolink N300RH firmware affecting the setUpgradeFW function; no PoC, exploit, patch, or active exploitation details are provided.

    0000034
    75 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-7748 A weakness has been identified in Totolink N300RH 3.2.4-B20220812. Affected by this issue is the function setUpgradeFW of the file /cgi-bin/cstecgi.cgi of the component… https://www.cve.org/CVERecord?id=CVE-2026-7748

    Post summary

    A new weakness CVE-2026-7748 in Totolink N300RH routers has been disclosed, detailing the affected upgrade firmware function, but no further exploitation or mitigation information is provided.

    00000186
    57.4K followersView on X

Explore more