VYPR
Unrated severityNVD Advisory· Published Jan 8, 2026· Updated Feb 23, 2026

TOTOLINK WA1200 HTTP Request cstecgi.cgi null pointer dereference

CVE-2026-0731

Description

A vulnerability has been found in TOTOLINK WA1200 5.9c.2914. The impacted element is an unknown function of the file cstecgi.cgi of the component HTTP Request Handler. The manipulation leads to null pointer dereference. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.

Affected products

2
  • Totolink/WA1200llm-create
    Range: = 5.9c.2914
  • TOTOLINK/WA1200v5
    Range: 5.9c.2914

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.