Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-105286

MEDIUM NVD
CVSS Score 6.3
Severity MEDIUM
Published Oct 05, 2026
Vendor unknown

Description

A vulnerability was detected in Totolink A3002MU 1.0.0-B20230403.1455. This impacts the function sub_44B250 of the file /boafrm/formUploadFile of the component File Upload Handler. The manipulation of the argument filename results in path traversal. The attack can be executed remotely. The exploit is now public and may be used.

References