No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 09 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 09 Apr 2026 07:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in Totolink A7100RU 7.4cu.2313_b20191024. Affected by this vulnerability is the function setIpv6LanCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Such manipulation of the argument addrPrefixLen leads to os command injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. | |
| Title | Totolink A7100RU CGI cstecgi.cgi setIpv6LanCfg os command injection | |
| First Time appeared |
Totolink
Totolink a7100ru Firmware |
|
| Weaknesses | CWE-77 CWE-78 |
|
| CPEs | cpe:2.3:o:totolink:a7100ru_firmware:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Totolink
Totolink a7100ru Firmware |
|
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-09T14:47:52.744Z
Reserved: 2026-04-08T19:20:04.129Z
Link: CVE-2026-5853
Updated: 2026-04-09T14:47:48.476Z
Status : Received
Published: 2026-04-09T07:16:05.273
Modified: 2026-04-09T07:16:05.273
Link: CVE-2026-5853
No data.
OpenCVE Enrichment
Updated: 2026-04-09T08:24:50Z