
CVE-2026-31167 An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the mode parameter to /cgi-bin/cstecg… https://www.cve.org/CVERecord?id=CVE-2026-31167
Post summary
A new CVE (2026-31167) has been disclosed, indicating that ToToLink A3300R firmware allows remote command execution via a CGI parameter; no PoC, exploit code, or patches are mentioned, and no evidence of active exploitation or mitigation is provided.
