Report: CVE-2026-9512 - Totolink CA750-PoE Setting cstecgi.cgi setPasswordCfg os command injection - Complete Guide
CVE ID :CVE-2026-9512 Published : May 25, 2026, 10:15 p.m. | 1 hour, 57 minutes ago Description :A security flaw has been discovered in Totolink CA750-PoE 6.2c.510. This vulnerability affects the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. Performing a manipulation of the argument admuser/admpass results in os command injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...