← Back to CVE search

CVE-2026-15204

TOTOLINK X5000R

Description

A vulnerability was detected in TOTOLINK X5000R 9.1.0cu.2415_B20250515/9.1.0cu.2350_B20230313. Affected by this vulnerability is the function exportOvpn of the file /web/cgi-bin/cstecgi.cgi of the component OpenVPN Export. The manipulation results in path traversal. The attack may be launched remotely.

CVSS 5.3EPSS 0.488%Risk 0.55
View source
Published
2026-07-09 18:16:51
Affected versions
cannotmatch
Type
Firmware
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N