Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2026-1601

8 месяцев назад

A weakness has been identified in Totolink A7000R 4.1cu.4154. The impacted element is the function setUploadUserData of the file /cgi-bin/cstecgi.cgi. Executing a manipulation of the argument FileName can lead to command injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-wpgv-345q-6vm7

8 месяцев назад

A weakness has been identified in Totolink A7000R 4.1cu.4154. The impacted element is the function setUploadUserData of the file /cgi-bin/cstecgi.cgi. Executing a manipulation of the argument FileName can lead to command injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

CVSS3: 6.3
EPSS: Низкий
fstec логотип

BDU:2026-13693

8 месяцев назад

Уязвимость функции setUploadUserData() микропрограммного обеспечения роутеров TOTOLINK A7000R, позволяющая нарушителю выполнить произвольный код

CVSS3: 6.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-1601

A weakness has been identified in Totolink A7000R 4.1cu.4154. The impacted element is the function setUploadUserData of the file /cgi-bin/cstecgi.cgi. Executing a manipulation of the argument FileName can lead to command injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

CVSS3: 6.3
2%
Низкий
8 месяцев назад
github логотип
GHSA-wpgv-345q-6vm7

A weakness has been identified in Totolink A7000R 4.1cu.4154. The impacted element is the function setUploadUserData of the file /cgi-bin/cstecgi.cgi. Executing a manipulation of the argument FileName can lead to command injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.

CVSS3: 6.3
2%
Низкий
8 месяцев назад
fstec логотип
BDU:2026-13693

Уязвимость функции setUploadUserData() микропрограммного обеспечения роутеров TOTOLINK A7000R, позволяющая нарушителю выполнить произвольный код

CVSS3: 6.3
2%
Низкий
8 месяцев назад

Уязвимостей на страницу