Description
A vulnerability was determined in Totolink WA300 5.2cu.7112_B20190227. This issue affects the function UploadCustomModule of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. Executing a manipulation of the argument File can lead to buffer overflow. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.
Problem types
Product status
Timeline
| 2026-05-03: | Advisory disclosed |
| 2026-05-03: | VulDB entry created |
| 2026-05-03: | VulDB entry last update |
Credits
wxhwxhwxh_mie (VulDB User)
References
vuldb.com/vuln/360893 (VDB-360893 | Totolink WA300 POST Request cstecgi.cgi UploadCustomModule buffer overflow)
vuldb.com/vuln/360893/cti (VDB-360893 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/submit/807193 (Submit #807193 | Totolink WA300 WA300 V5.2cu.7112_B20190227 Buffer Overflow)
lavender-bicycle-a5a.notion.site/...781f80a8a287e48a7fb04de9
www.totolink.net/