CNNVD-202602-1198 Information
Feb 08, 2026
cve
CNNVD ID
CNNVD-202602-1198
Related CVE
- CNNVD Published: 2026-02-08
Description (Chinese)
TOTOLINK WA300是中国吉翁电子(TOTOLINK)公司的一款无线接入点。 Totolink WA300 5.2cu.7112_B20190227版本存在操作系统命令注入漏洞,该漏洞源于对文件/cgi-bin/cstecgi.cgi中参数Ipaddr的错误操作,可能导致os命令注入。
Description (English)
TOTOLINK WA300 is a wireless access point for the Chinese company TOTOLINK. Totolink WA 300 5.2cu.7112 B20190227 has a loophole in the operating system command, which results from an error in the Ipaddr parameter in file/cgi-bin/cstecgi.cgi, which may lead to an Os command injection.
Hazard Level
High
Vulnerability Type
操作系统命令注入
Affected Vendor
吉翁电子
Published
2026-02-08
Last Modified
2026-02-24
References
https://www.totolink.net/ https://vuldb.com/?id.344869 https://vuldb.com/?submit.752063 https://github.com/master-abc/cve/issues/36 https://vuldb.com/?ctiid.344869 https://access.redhat.com/security/cve/cve-2026-2167
Share on: