Totolink · Nr1800X · CVE-2026-15701
**Name of the Vulnerable Software and Affected Versions**
Totolink NR1800X version 9.1.0u.6279 B20210910
**Description**
A stack-based buffer overflow occurs in the `Form Logout()` function within the `/formLogout.htm` file of the lighttpd component. This issue is triggered by the manipulation of the `Host` argument and can be exploited remotely.
**Recommendations**
Update Totolink NR1800X version 9.1.0u.6279 B20210910 to a patched version.