Junglewise Threat Intelligence

CVE-2026-15204: TOTOLINK X5000R path traversal in OpenVPN Export

CVE-2026-15204 · Severity: medium · CVSS 5.3 · Published 2026-07-09

Executive brief

A security vulnerability has been identified in the TOTOLINK X5000R wireless router, specifically within its OpenVPN configuration export feature. This flaw allows an unauthorized person to access files on the device that should normally be protected. An attacker could use this to gain sensitive information about the device's configuration or internal operations, potentially compromising the security of the network it manages.

Technical details

A path traversal vulnerability (CWE-22) exists in the TOTOLINK X5000R router within the 'exportOvpn' function of the '/web/cgi-bin/cstecgi.cgi' script. The vulnerability is located in the OpenVPN Export component and can be exploited remotely without authentication. By manipulating input parameters, an attacker can traverse the file system to read arbitrary files on the device. This issue affects firmware versions 9.1.0cu.2415_B20250515 and 9.1.0cu.2350_B20230313. A proof-of-concept for pre-authentication file disclosure has been referenced in public repositories.

Affected products

  • TOTOLINK X5000R 9.1.0cu.2415_B20250515, 9.1.0cu.2350_B20230313

Timeline

  • 2026-07-09: advisory: NVD publication date

References

Related threats