Totolink · Cp450 · CVE-2026-11554
**Name of the Vulnerable Software and Affected Versions**
TOTOLINK CP450 version 4.1.0cu.747
**Description**
A least privilege violation exists in the vsftpd component, specifically within the `/etc/vsftpd.conf` file. This issue allows a remote attacker to perform manipulations that violate the principle of least privilege, which ensures that a process or user has only the minimum permissions necessary to perform its function.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.