A vulnerability was identified in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setSyslogCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such manipulation of the argument enable leads to os command injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
Metrics
Affected Vendors & Products
References
History
Fri, 10 Apr 2026 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was identified in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function setSyslogCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such manipulation of the argument enable leads to os command injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used. | |
| Title | Totolink A7100RU CGI cstecgi.cgi setSyslogCfg os command injection | |
| First Time appeared |
Totolink
Totolink a7100ru Firmware |
|
| Weaknesses | CWE-77 CWE-78 |
|
| CPEs | cpe:2.3:o:totolink:a7100ru_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Totolink
Totolink a7100ru Firmware |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-10T05:30:21.486Z
Reserved: 2026-04-09T15:55:16.991Z
Link: CVE-2026-6025
No data.
Status : Received
Published: 2026-04-10T06:16:07.203
Modified: 2026-04-10T06:16:07.203
Link: CVE-2026-6025
No data.
OpenCVE Enrichment
No data.