An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stun-pass parameter to /cgi-bin/cstecgi.cgi.
CVE-2026-31170
NONE
EPSS 0.41%
Updated Apr 09, 2026
ToToLink
CVE Details
CVE ID
CVE-2026-31170
Published Date
Apr 09, 2026
Vendor
ToToLink
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.41%
Likelihood of exploitation in next 30 days
Percentile:
61.6th percentile (higher than 61.6% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory