CVE-2026-9455 | Totolink A8000RU 7.1cu.643_b20200521 Web Management Interface /cgi-bin/cstecgi.cgi UploadOpenVpnCert FileName os command injection

SecurityVulns

A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. It has been rated as critical. This issue affects the function UploadOpenVpnCert of the file /cgi-bin/cstecgi.cgi of the component Web Management Interface. The manipulation of the argument FileName leads to os command injection.

This vulnerability is referenced as CVE-2026-9455. Remote exploitation of the attack is possible. Furthermore, an exploit is available.VulDB Recent EntriesRead More