setLanguageCfg of the file /cgi-bin/cstecgi.cgi of the component Web Management Interface. Such manipulation of the argument lang leads to os command injection.This vulnerability is listed as CVE-2026-9386. The attack may be performed from remote. In addition, an exploit is available.
SOCIAL SHARE CARD GENERATOR