Impact
The flaw is caused by an incorrect access control in the getCrpcConfig function of TOTOLINK T6 firmware 4.1.5cu.748_B20211015. An unauthenticated attacker can send a crafted POST request to /cgi-bin/cstecgi.cgi and obtain cloud remote‑control status and URL information, revealing sensitive configuration data that could be leveraged for further compromise.
Affected Systems
The vulnerability is documented only for TOTOLINK T6 routers running firmware version 4.1.5cu.748_B20211015. No other product or firmware versions are referenced in the advisory, so impact is limited to that specific model and build.
Risk and Exploitability
Authentication is not required, so any host that can reach the router’s web interface can trigger the vulnerability. The EPSS score is < 1%, KEV is not listed, and a CVSS score of 7.5 indicates a high‑risk exposure. The ease of exploitation and the disclosure of control‑related settings suggest that externally reachable routers are at elevated risk.
OpenCVE Enrichment