TOTOLINK LR350 V9.3.5u.6369_B20220309 contains a post-authentication buffer overflow via parameter lang in the setLanguageCfg function.
https://github.com/Live-Hack-CVE/CVE-2022-44256
https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-47205
https://brief-nymphea-813.notion.site/LR350-bof-setLanguageCfg-ddd638b9bb2d4c72b8dba5125c293141