Exploit for CVE-2026-3696

A vulnerability was found in Totolink N300RH 6..1c.1353_B20190305. The affected element is the function setWiFiWpsConfig of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. Performing a manipulation results in os command injection. The attack can be initiated remotely. The exploit has been made public and could be used.

Published: 2026-03-08

CVSS: 9.8

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Download Exploit for CVE-2026-3696 here:

Use Tor Browser to access .onion site.

https://sonitex.com/exploit-588-cve-2026-29093/

https://sonitex.com/exploit-193-cve-2026-2796/

https://sonitex.com/exploit-16-cve-2025-67997/