๐Ÿ” CVE Alert

CVE-2026-11494

MEDIUM 4.3

TOTOLINK AC1200 T8 vsftpd vsftpd.conf least privilege violation

CVSS Score
4.3
EPSS Score
0.1%
EPSS Percentile
16th

A security vulnerability has been detected in TOTOLINK AC1200 T8 4.1.5cu.8611. This affects an unknown function of the file /etc/vsftpd.conf of the component vsftpd. The manipulation leads to least privilege violation. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.

CWE CWE-272 CWE-266
Vendor totolink
Product ac1200 t8
Published Jun 8, 2026
Last Updated Jun 9, 2026
Stay Ahead of the Next One

Get instant alerts for totolink ac1200 t8

Be the first to know when new medium vulnerabilities affecting totolink ac1200 t8 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N/E:P/RL:X/RC:R
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

TOTOLINK / AC1200 T8
4.1.5cu.8611

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
vuldb.com: https://vuldb.com/vuln/369114 vuldb.com: https://vuldb.com/vuln/369114/cti vuldb.com: https://vuldb.com/cve/CVE-2026-11494 vuldb.com: https://vuldb.com/submit/834819 notion.so: https://www.notion.so/TOTOLink-AC1200T8-V4-1-5cu-8611-3671f5ba989080a6aa03e6adbdd1d104?source=copy_link totolink.net: https://www.totolink.net/

Credits

๐Ÿ” L-14 (VulDB User)