{"id":"CVE-2026-94952","published":"2026-09-29T21:19:39.433","lastModified":"2026-09-29T21:28:02.477","description":"A stack-based buffer overflow vulnerability exists in the web management interface of TOTOLINK N150RT (NTR150) firmware V3.4.0-B20201030. It is reachable through the route /boafrm/formPortFw (port-forwarding configuration handler) and is triggered by the ip_subnet and fw_ip request parameters during the rule-addition flow.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":[],"vendors":[],"products":[],"references":[{"url":"https://gist.github.com/H3rmesk1t/0f2e6a120c92a37282779516b7e93e03","tags":[]}],"exploitRefs":[{"url":"https://gist.github.com/H3rmesk1t/0f2e6a120c92a37282779516b7e93e03","tags":[]}],"hasPoc":true,"ai":null}