
CVE-2026-31172 An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the user parameter to /cgi-bin/cstecg… https://www.cve.org/CVERecord?id=CVE-2026-31172
Post summary
Disclosed a remote code execution vulnerability in ToToLink A3300R firmware v17.0.0cu.557_B20221024 that allows attackers to run arbitrary commands via the user parameter to /cgi-bin/cstecg.
