CVE-2026-7719

CRITICAL

A security flaw has been discovered in Totolink WA300 5.2cu.7112_B20190227. The affected element is the function loginauth of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. Th...

Affects 0 products across 2 vendors.

BCS6.43
CVSS 3.19.8
CVSS v48.9
EPSS0.6%
Percentile47th
PatchUnknown
CVSS Vector — Plain English Remotely exploitable over the network, low complexity, no authentication required, no user interaction needed, impact contained to the vulnerable component, full confidentiality impact, full integrity impact, full availability impact.
CWE Weakness Definitions
CWE-119: Improper Restriction of Operations within Memory Buffer

Parent class for buffer-related vulnerabilities where operations exceed buffer boundaries.

CWE-120: Buffer Copy without Checking Size (Classic Buffer Overflow)

Program copies data to a buffer without verifying the source data fits within the destination.

Related Attack Patterns (CAPEC)
CAPEC-8 Buffer Overflow in an API Call
via CWE-119 CWE-120
CAPEC-9 Buffer Overflow in Local Command-Line Utilities
via CWE-119 CWE-120
CAPEC-10 Buffer Overflow via Environment Variables
via CWE-119 CWE-120
CAPEC-14 Client-side Injection-induced Buffer Overflow
via CWE-119 CWE-120
CAPEC-24 Filter Failure through Buffer Overflow
via CWE-119 CWE-120
Show all 14

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ SAGE Intelligence — CITED Relevance Research Team

A critical security flaw exists in Totolink WA300 5.2cu.7112_B20190227 affecting the function loginauth, leading to a buffer overflow via manipulation of the http_host argument in a POST request.

BSID: BS-2026-GLOBAL-154880-C • Model: /workspace/models/qwen2.5-coder-32b-instruct-bf16 • Confidence: HIGH

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2026-7719?
A critical security flaw exists in Totolink WA300 5.2cu.7112_B20190227 affecting the function loginauth, leading to a buffer overflow via manipulation of the http_host argument in a POST request.
What is the CVSS score for CVE-2026-7719?
CVE-2026-7719 has CVSS 9.8 (Critical). Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H. EPSS: 0.6%.
Is CVE-2026-7719 actively exploited?
No confirmed active exploitation of CVE-2026-7719 as of 2026-05-30.
How do I remediate CVE-2026-7719?
Priority: IMMEDIATE.
What systems are affected by CVE-2026-7719?
CVE-2026-7719 affects: Element, Totolink.
Vulnerability Details
CVE IDCVE-2026-7719
BSIDBS-2026-GLOBAL-154880-C BreachSpider Global ID
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Published2026-05-04
Last Modified2026-05-04
ICS Relevance15%
Weakness (CWE)
SourceNVD
Official Description

A security flaw has been discovered in Totolink WA300 5.2cu.7112_B20190227. The affected element is the function loginauth of the file /cgi-bin/cstecgi.cgi of the component POST Request Handler. The manipulation of the argument http_host results in buffer overflow. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

The vulnerability can be exploited remotely by sending a specially crafted POST request to the /cgi-bin/cstecgi.cgi endpoint, which results in a buffer overflow due to improper handling of the http_host argument.

Exploitation Likelihood: CRITICAL

Affected Products
VendorProductFixed Version
Element —
Totolink —
Remediation

No patch URL on record. Monitor vendor security advisories directly.

Threat Intelligence
● Threat Intelligence Validated: August 2026 | Threat Age: 106 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
SAGE Enrichment Record — provenance & audit hash
Model/workspace/models/qwen2.5-coder-32b-instruct-bf16
ConfidenceHIGH
Enriched At2026-05-24
SHA-512 Audit Hashfa4dc37361685212d7b714228cf9bfac373a94e10e25e07fb22587ffef0a3a426d48e19c621b9cb627ee8b47ec698cf00159489950779fac72e26d1a323b9c1d
Related CVEs affecting Element
CVE-2024-32962 10.0 xml-crypto is an xml digital signature and encryption library for Node.js. In... CVE-2024-56829 10.0 Huang Yaoshi Pharmaceutical Management Software through 16.0 allows arbitrary... CVE-2026-7243 9.8 A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. The a... CVE-2026-6279 9.8 The Avada Builder (fusion-builder) plugin for WordPress is vulnerable to Unau... CVE-2026-7546 9.8 A security vulnerability has been detected in Totolink NR1800X 9.1.0u.6279_B2...
View all Element CVEs →

Critical Severity - Know Your Exposure

A CVSS 9.8 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Check Your Assets Free →