Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 05 Jun 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
T3techgroup
T3techgroup cpe |
|
| Vendors & Products |
T3techgroup
T3techgroup cpe |
Thu, 04 Jun 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated Command Injection via Undocumented Debug CGI Endpoint in T3 Technology CPE Devices |
Thu, 04 Jun 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated Command Injection via Undocumented Debug CGI Endpoint in T3 Technology CPE Devices |
Thu, 04 Jun 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-78 | |
| Metrics |
cvssV3_1
|
Thu, 04 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An undocumented debug CGI endpoint in T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03 allows unauthenticated attackers to execute arbitrary system commands as root via supplying a crafted HTTP query string. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-04T14:54:47.714Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-35906
Updated: 2026-06-04T14:51:57.348Z
Status : Deferred
Published: 2026-06-04T15:16:50.870
Modified: 2026-06-04T16:23:33.747
Link: CVE-2026-35906
No data.
OpenCVE Enrichment
Updated: 2026-06-05T10:09:31Z