VYPR
Unrated severityNVD Advisory· Published Jul 9, 2026· Updated Jul 14, 2026

TOTOLINK X5000R OpenVPN Export cstecgi.cgi exportOvpn path traversal

CVE-2026-15204

Description

A vulnerability was detected in TOTOLINK X5000R 9.1.0cu.2415_B20250515/9.1.0cu.2350_B20230313. Affected by this vulnerability is the function exportOvpn of the file /web/cgi-bin/cstecgi.cgi of the component OpenVPN Export. The manipulation results in path traversal. The attack may be launched remotely.

Affected products

1
  • Totolink/X5000Rllm-fuzzy
    Range: 9.1.0cu.2415_B20250515/9.1.0cu.2350_B20230313

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.