PT-2026-43011 · Totolink · A8000Ru

Ltzhuster2

·

Published

2026-05-25

·

Updated

2026-05-25

·

CVE-2026-9433

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
A weakness has been identified in Totolink A8000RU 7.1cu.643 b20200521. This issue affects the function setMacFilterRules of the file /cgi-bin/cstecgi.cgi of the component Web Management Interface. This manipulation of the argument enable causes os command injection. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.

Exploit

OS Command Injection

Command Injection

Weakness Enumeration

Related Identifiers

CVE-2026-9433

Affected Products

A8000Ru