Orizon[verified]@OrizonCyberPatch
A critical vulnerability, CVE‑2026‑6131, has been identified in the Totolink A7100RU router, and a patch is now available.
CVE@CVEnewDisclosure
The post reports the discovery of a vulnerability (CVE‑2026‑6131) in Totolink A7100RU routers, specifically affecting the setTracerouteCfg function in cgi-bin/cstecgi.cgi.
CVEFind.com@CveFindComDisclosure
The post announces a critical CVE (CVE‑2026‑6131) affecting a Totolink A7100RU router, detailing an OS command injection via the setTracerouteCfg function in a CGI script, but it provides no PoC, exploit code, patch or evidence of active exploitation.
0day Signal@0dayPublishingExploit
CVE‑2026‑6131 exposes a remote command execution flaw in Totolink A7100RU’s traceroute CGI, with no authentication required. A public exploit is available on a vulnerability site, but there is no indication of active exploitation in the wild.