Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Skeet

#37374of 53,630
7.5Total CVSS
Vulnerabilities · 1
PT-2026-30700
7.5
2026-04-06
Totolink · Totolink A8000Ru · CVE-2026-5676
Name of the Vulnerable Software and Affected Versions Totolink A8000R version 5.9c.681 B20180413 Description A flaw exists in the `setLanguageCfg` function within the `/cgi-bin/cstecgi.cgi` file of Totolink A8000R version 5.9c.681 B20180413. Manipulation of the `langType` argument bypasses authentication, allowing for remote attacks. The exploit is publicly available. Recommendations Update to a newer version that contains a fix for this vulnerability. As a temporary workaround, restrict access to the `/cgi-bin/cstecgi.cgi` file.