← Back to CVE search

CVE-2026-5692

Totolink A7100RU

Description

A vulnerability was found in Totolink A7100RU 7.4cu.2313_b20191024. This impacts the function setGameSpeedCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument enable results in os command injection. The attack may be performed from remote. The exploit has been made public and could be used.

CVSS 7.3EPSS 1.429%Risk 0.82
View source
Published
2026-04-07 00:16:20
Affected versions
cannotmatch
Type
Firmware
Last modified
2026-07-24 09:10:00
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L