Impact
The vulnerability is an incorrect access control in the getSysStatusCfg function of TOTOLINK T6 firmware version 4.1.5cu.748_B20211015. An unauthenticated attacker can obtain sensitive device information such as operation mode, firmware version, serial number, WAN/LAN IP addresses, WiFi SSID, encryption keys, and connected client statistics by sending a crafted POST request to /cgi-bin/cstecgi.cgi.
Affected Systems
TOTOLINK T6 series devices running firmware 4.1.5cu.748_B20211015 are affected.
Risk and Exploitability
The vulnerability can be exploited without authentication by sending a POST request to /cgi-bin/cstecgi.cgi. EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog. An unauthenticated attacker can read sensitive configuration data; no credentials or special privileges beyond network access to the device are required.
OpenCVE Enrichment