CVE-2026-5030
A vulnerability has been found in Totolink NR1800X 9.1.0u.6279_B20210910. This issue affects the function NTPSyncWithHos
A vulnerability has been found in Totolink NR1800X 9.1.0u.6279_B20210910. This issue affects the function NTPSyncWithHost of the file /cgi-bin/cstecgi.cgi of the component Telnet Service. The manipulation of the argument host_time leads to command injection.
The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
MEDIUM · CVSS 6.3
EPSS 0.01919
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0