CVE-2026-31170
- EPSS 0.45%
- Veröffentlicht 09.04.2026 19:16:23
- Zuletzt bearbeitet 22.04.2026 16:43:08
An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stun-pass parameter to /cgi-bin/cstecgi.cgi.
CVE-2026-5679
- EPSS 0.5%
- Veröffentlicht 06.04.2026 19:00:19
- Zuletzt bearbeitet 29.04.2026 01:00:01
A security vulnerability has been detected in Totolink A3300R 17.0.0cu.557_B20221024. The impacted element is the function vsetTr069Cfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument stun_pass leads to os command injection. The ex...
CVE-2026-5178
- EPSS 0.69%
- Veröffentlicht 31.03.2026 03:00:14
- Zuletzt bearbeitet 29.04.2026 01:00:01
A security vulnerability has been detected in Totolink A3300R 17.0.0cu.557_b20221024. Affected by this issue is the function setIptvCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument vlanPriLan3 leads to command injection. Remote ...
CVE-2026-5177
- EPSS 0.69%
- Veröffentlicht 31.03.2026 02:00:21
- Zuletzt bearbeitet 29.04.2026 01:00:01
A weakness has been identified in Totolink A3300R 17.0.0cu.557_b20221024. Affected by this vulnerability is the function setWiFiBasicCfg of the file /cgi-bin/cstecgi.cgi. Executing a manipulation of the argument rxRate can lead to command injection. ...
CVE-2026-5176
- EPSS 2.18%
- Veröffentlicht 31.03.2026 01:15:13
- Zuletzt bearbeitet 29.04.2026 01:00:01
A security flaw has been discovered in Totolink A3300R 17.0.0cu.557_b20221024. Affected is the function setSyslogCfg of the file /cgi-bin/cstecgi.cgi. Performing a manipulation of the argument provided results in command injection. The attack may be ...
CVE-2026-5105
- EPSS 2.67%
- Veröffentlicht 30.03.2026 03:00:20
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was detected in Totolink A3300R 17.0.0cu.557_b20221024. The affected element is the function setVpnPassCfg of the file /cgi-bin/cstecgi.cgi of the component Parameter Handler. Performing a manipulation of the argument pptpPassThru res...
CVE-2026-5104
- EPSS 2.67%
- Veröffentlicht 30.03.2026 02:00:15
- Zuletzt bearbeitet 29.04.2026 01:00:01
A security vulnerability has been detected in Totolink A3300R 17.0.0cu.557_b20221024. Impacted is the function setStaticRoute of the file /cgi-bin/cstecgi.cgi. Such manipulation of the argument ip leads to command injection. The attack may be perform...
CVE-2026-5103
- EPSS 2.67%
- Veröffentlicht 30.03.2026 01:00:20
- Zuletzt bearbeitet 29.04.2026 01:00:01
A weakness has been identified in Totolink A3300R 17.0.0cu.557_b20221024. This issue affects the function setUPnPCfg of the file /cgi-bin/cstecgi.cgi. This manipulation of the argument enable causes command injection. The attack is possible to be car...
CVE-2026-5102
- EPSS 2.67%
- Veröffentlicht 30.03.2026 00:00:20
- Zuletzt bearbeitet 29.04.2026 01:00:01
A security flaw has been discovered in Totolink A3300R 17.0.0cu.557_b20221024. This vulnerability affects the function setSmartQosCfg of the file /cgi-bin/cstecgi.cgi of the component Parameter Handler. The manipulation of the argument qos_up_bw resu...
CVE-2026-5101
- EPSS 3.62%
- Veröffentlicht 29.03.2026 23:00:15
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was identified in Totolink A3300R 17.0.0cu.557_b20221024. This affects the function setLanCfg of the file /cgi-bin/cstecgi.cgi of the component Parameter Handler. The manipulation of the argument lanIp leads to command injection. Remo...