


Perceptive Security
SOC/SIEM Consultancy

A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setVpnPassCfg of the file /cgi-bin/cstecgi.cgi of t…
Published:
25 April 2026 at 22:00:00
Alert date:
26 April 2026 at 13:01:40
Source:
nvd.nist.gov
Mobile & IoT, Network Infrastructure
A security vulnerability has been discovered in Totolink A8000RU router version 7.1cu.643_b20200521. The flaw affects the setVpnPassCfg function in /cgi-bin/cstecgi.cgi of the CGI Handler component. Attackers can manipulate the pptpPassThru argument to achieve OS command injection. The vulnerability can be exploited remotely, making it particularly dangerous. A public exploit has been released and is available for potential attackers to use. This represents a critical security risk for affected devices as it allows remote code execution capabilities.
Technical details
Mitigation steps:
Affected products:
Totolink A8000RU
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-7037
https://github.com/Litengzheng/vuldb_new2/blob/main/A8000RU/vul_305/README.md
https://vuldb.com/submit/798484
https://vuldb.com/vuln/359617
https://vuldb.com/vuln/359617/cti
https://www.totolink.net/
Related CVE's:
Related threat actors:
IOC's:
/cgi-bin/cstecgi.cgi, setVpnPassCfg, pptpPassThru
This article was created with the assistance of AI technology by Perceptive.
