Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Search Results: "cstecgi.cgi"
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-9543: OS Command Injection in Totolink N300RHCVE-2026-9543 0 A vulnerability has been found in Totolink N300RH 6.1c.1353_B20190305. Affected is the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi of the component Web Management Interface. Such manipulation of the argument admpass leads to os command injection. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. Join the discussion | CVE Database V5 | 05/26/2026, 12:30:11 UTC Added: 05/26/2026, 13:32:38 UTC |
CVE-2026-9534: OS Command Injection in Totolink CA750-PoECVE-2026-9534 0 A flaw has been found in Totolink CA750-PoE 6.2c.510. This affects the function setWiFiWpsConfig of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. Executing a manipulation of the argument PIN can lead to os command injection. It is possible to launch the attack remotely. The exploit has been published and may be used. Join the discussion | CVE Database V5 | 05/26/2026, 05:30:11 UTC Added: 05/26/2026, 06:25:00 UTC |
CVE-2026-9533: OS Command Injection in Totolink CA750-PoECVE-2026-9533 0 A vulnerability was detected in Totolink CA750-PoE 6.2c.510. The impacted element is the function recvUpgradeNewFw of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. Performing a manipulation of the argument fwUrl/magicid results in os command injection. It is possible to initiate the attack remotely. The exploit is now public and may be used. Join the discussion | CVE Database V5 | 05/26/2026, 05:15:08 UTC Added: 05/26/2026, 06:25:00 UTC |
CVE-2026-9532: OS Command Injection in Totolink CA750-PoECVE-2026-9532 0 A security vulnerability has been detected in Totolink CA750-PoE 6.2c.510. The affected element is the function setUploadUserData of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. Such manipulation of the argument FileName leads to os command injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. Join the discussion | CVE Database V5 | 05/26/2026, 05:00:14 UTC Added: 05/26/2026, 06:25:00 UTC |
CVE-2026-9531: OS Command Injection in Totolink CA750-PoECVE-2026-9531 0 A weakness has been identified in Totolink CA750-PoE 6.2c.510. Impacted is the function setUpgradeUboot of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. This manipulation of the argument FileName causes os command injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks. Join the discussion | CVE Database V5 | 05/26/2026, 04:45:14 UTC Added: 05/26/2026, 04:55:00 UTC |
CVE-2026-9515: OS Command Injection in Totolink CA750-PoECVE-2026-9515 0 A vulnerability was detected in Totolink CA750-PoE 6.2c.510. The affected element is the function setUnloadUserData of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. The manipulation of the argument plugin_version results in os command injection. The attack may be launched remotely. The exploit is now public and may be used. Join the discussion | CVE Database V5 | 05/25/2026, 23:15:13 UTC Added: 05/25/2026, 23:24:59 UTC |
CVE-2026-9514: OS Command Injection in Totolink CA750-PoECVE-2026-9514 0 A security vulnerability has been detected in Totolink CA750-PoE 6.2c.510. Impacted is the function setNetworkDiag of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. The manipulation of the argument NetDiagHost/NetDiagPingNum/NetDiagPingSize/NetDiagPingTimeOut/NetDiagTracertHop is directly passed by the attacker/so we can control the NetDiagHost/NetDiagPingNum/NetDiagPingSize/NetDiagPingTimeOut/NetDiagTracertHop leads to os command injection. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. Join the discussion | CVE Database V5 | 05/25/2026, 22:45:09 UTC Added: 05/25/2026, 23:09:59 UTC |
CVE-2026-9513: OS Command Injection in Totolink CA750-PoECVE-2026-9513 0 A weakness has been identified in Totolink CA750-PoE 6.2c.510. This issue affects the function NTPSyncWithHost of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. Executing a manipulation of the argument host_time can lead to os command injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks. Join the discussion | CVE Database V5 | 05/25/2026, 22:30:12 UTC Added: 05/25/2026, 22:40:00 UTC |
CVE-2026-9512: OS Command Injection in Totolink CA750-PoECVE-2026-9512 0 A security flaw has been discovered in Totolink CA750-PoE 6.2c.510. This vulnerability affects the function setPasswordCfg of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. Performing a manipulation of the argument admuser/admpass results in os command injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks. Join the discussion | CVE Database V5 | 05/25/2026, 22:15:11 UTC Added: 05/25/2026, 22:40:00 UTC |
CVE-2026-9511: OS Command Injection in Totolink CA750-PoECVE-2026-9511 0 A vulnerability was identified in Totolink CA750-PoE 6.2c.510. This affects the function setWebWlanIdx of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. Such manipulation of the argument webWlanIdx leads to os command injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used. Join the discussion | CVE Database V5 | 05/25/2026, 22:00:15 UTC Added: 05/25/2026, 22:10:00 UTC |
Showing 1 to 10 of 34 results