Report: Update: CVE-2026-5176 - Totolink A3300R cstecgi.cgi setSyslogCfg command injection

Report: Update: CVE-2026-5176 - Totolink A3300R cstecgi.cgi setSyslogCfg command injection

CVE ID :CVE-2026-5176 Published : March 31, 2026, 2:15 a.m. | 1 hour, 24 minutes ago Description :A security flaw has been discovered in Totolink A3300R 17.0.0cu.557_b20221024. Affected is the function setSyslogCfg of the file /cgi-bin/cstecgi.cgi. Performing a manipulation of the argument provided results in command injection. The attack may be initiated remotely. The exploit has been released to the public and may be used for attacks. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
March 31, 2026
Impact: command injection