A vulnerability has been found in Totolink A7100RU 7.4cu.2313_b20191024. This affects the function UploadOpenVpnCert of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such manipulation of the argument FileName leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
References
Configurations
No configuration.
History
13 Apr 2026, 01:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-13 01:16
Updated : 2026-06-17 11:00
NVD link : CVE-2026-6139
Mitre link : CVE-2026-6139
CVE.ORG link : CVE-2026-6139
JSON object : View
Products Affected
No product.
