Metrics
Affected Vendors & Products
Thu, 28 May 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 26 May 2026 05:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in Totolink CA750-PoE 6.2c.510. Impacted is the function setUpgradeUboot of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. This manipulation of the argument FileName causes os command injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks. | |
| Title | Totolink CA750-PoE Setting cstecgi.cgi setUpgradeUboot os command injection | |
| First Time appeared |
Totolink
Totolink ca750-poe |
|
| Weaknesses | CWE-77 CWE-78 |
|
| CPEs | cpe:2.3:a:totolink:ca750-poe:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Totolink
Totolink ca750-poe |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-05-26T04:45:14.640Z
Updated: 2026-05-28T15:23:42.160Z
Reserved: 2026-05-25T19:44:08.528Z
Link: CVE-2026-9531
Updated: 2026-05-28T15:21:24.498Z
Status : Deferred
Published: 2026-05-26T05:16:19.367
Modified: 2026-05-28T17:16:35.643
Link: CVE-2026-9531
No data.