---
id: CVE-2026-91853
title: A vulnerability has been found in TOTOLINK X5000R 9.1.0cu.2089_B20211224
summary: >-
  A vulnerability has been found in TOTOLINK X5000R 9.1.0cu.2089_B20211224. The
  impacted element is the function exportOvpn of the file
  /cgi-bin/cstecgi.cgi?action=exportOvpn&type=user of the component Export Ovpn
  Handler. The manipulation…
severity: high
cvss: 7.4
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L'
cwe:
  - CWE-77
  - CWE-78
vendor: TOTOLINK
product: X5000R
affected:
  - X5000R 9.1.0cu.2089_B20211224
published: '2026-09-15'
updated: '2026-09-16'
sourceUpdated: '2026-09-16T17:53:40.500'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-91853'
references:
  - url: 'https://github.com/awigwu76/TOTOLINK_X5000R/blob/main/2.md'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2026-91853'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/933810'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/404082'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/404082/cti'
    label: cna@vuldb.com
  - url: 'https://www.totolink.net/'
    label: cna@vuldb.com
tags:
  - nvd
  - cve.org
  - exploit-available
exploitAvailable: true
ssvc:
  exploitation: poc
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-09-15T17:27:52.615045Z'
ingestedAt: '2026-09-15T16:40:03.397Z'
epss: 0.01817
epssPercentile: 0.77765
---

## Overview

A vulnerability has been found in TOTOLINK X5000R 9.1.0cu.2089_B20211224. The impacted element is the function exportOvpn of the file /cgi-bin/cstecgi.cgi?action=exportOvpn&type=user of the component Export Ovpn Handler. The manipulation of the argument filetype leads to os command injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
