Report: Complete Guide to CVE-2026-5689 - Totolink A7100RU cstecgi.cgi setNtpCfg os command injection

Report: Complete Guide to CVE-2026-5689 - Totolink A7100RU cstecgi.cgi setNtpCfg os command injection

CVE ID :CVE-2026-5689 Published : April 6, 2026, 11:16 p.m. | 15 minutes ago Description :A vulnerability was detected in Totolink A7100RU 7.4cu.2313_b20191024. The affected element is the function setNtpCfg of the file /cgi-bin/cstecgi.cgi. Performing a manipulation of the argument tz results in os command injection. Remote exploitation of the attack is possible. The exploit is now public and may be used. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
April 6, 2026
Impact: command injection