CVE-2026-7721
- EPSS 4.84%
- Veröffentlicht 04.05.2026 03:16:12
- Zuletzt bearbeitet 04.05.2026 15:18:40
A security vulnerability has been detected in Totolink WA300 5.2cu.7112_B20190227. This affects the function NTPSyncWithHost of the file /cgi-bin/cstecgi.cgi. Such manipulation of the argument hostTime leads to command injection. The attack can be ex...
CVE-2026-7718
- EPSS 3.75%
- Veröffentlicht 04.05.2026 02:15:58
- Zuletzt bearbeitet 04.05.2026 15:18:40
A vulnerability was identified in Totolink WA300 5.2cu.7112_B20190227. Impacted is the function setWebWlanIdx of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. The manipulation of the argument webWlanIdx leads to command injecti...
CVE-2026-7719
- EPSS 0.1%
- Veröffentlicht 04.05.2026 02:15:58
- Zuletzt bearbeitet 04.05.2026 15:18:40
A security flaw has been discovered in Totolink WA300 5.2cu.7112_B20190227. The affected element is the function loginauth of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. The manipulation of the argument http_host results in b...
CVE-2026-7720
- EPSS 4.84%
- Veröffentlicht 04.05.2026 02:15:58
- Zuletzt bearbeitet 04.05.2026 15:18:40
A weakness has been identified in Totolink WA300 5.2cu.7112_B20190227. The impacted element is the function setLanguageCfg of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. This manipulation of the argument langType causes comma...
CVE-2026-7717
- EPSS 0.09%
- Veröffentlicht 04.05.2026 01:00:23
- Zuletzt bearbeitet 04.05.2026 15:18:40
A vulnerability was determined in Totolink WA300 5.2cu.7112_B20190227. This issue affects the function UploadCustomModule of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. Executing a manipulation of the argument File can lead t...
CVE-2026-4497
- EPSS 0.73%
- Veröffentlicht 20.03.2026 19:16:20
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was determined in Totolink WA300 5.2cu.7112_B20190227. Affected by this issue is the function recvUpgradeNewFw of the file /cgi-bin/cstecgi.cgi. This manipulation causes os command injection. Remote exploitation of the attack is possi...
CVE-2026-2167
- EPSS 0.41%
- Veröffentlicht 08.02.2026 17:15:58
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was detected in Totolink WA300 5.2cu.7112_B20190227. The impacted element is the function setAPNetwork of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument Ipaddr results in os command injection. The attack may be perfor...