A weakness has been identified in Totolink CA750-PoE 6.2c.510. Impacted is the function setUpgradeUboot of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. This manipulation of the argument FileName causes os command injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks.
References
Configurations
No configuration.
History
28 May 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://vuldb.com/submit/813929 - |
26 May 2026, 05:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-26 05:16
Updated : 2026-05-28 17:16
NVD link : CVE-2026-9531
Mitre link : CVE-2026-9531
CVE.ORG link : CVE-2026-9531
JSON object : View
Products Affected
No product.
