SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-75118

HIGH · CVSS 8.7 EPSS 0.25% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-28 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

A stack-based buffer overflow vulnerability in the http_gdpr_decrypt function of TL-MR100 V3.20 allows unauthenticated attackers with access to the router's web management interface to exploit insufficient bounds checking on encrypted requests. This can lead to memory corruption, potentially enabling arbitrary code execution or service crashes before authentication occurs. Organizations using this router model should prioritize patching to mitigate the risk of exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit arbitrary code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-75118
Severity
HIGH
CVSS
8.7
EPSS
0.25%

Original NVD Description

A pre-authentication stack-based buffer overflow vulnerability exists in the http_gdpr_decrypt function of TL-MR100 V3.20 due to insufficient bounds checking of encrypted requests to the /cgi/login endpoint. An adjacent unauthenticated attacker with access to the router's web management interface can trigger memory corruption and potentially achieve arbitrary code execution. Successful exploitation can overwrite saved control-flow data on the httpd process stack prior to authentication, resulting in a service crash or potential arbitrary code execution in the context of the affected process.