CVE-2026-35906
EUVD-2026-3427604.06.2026, 15:16
An undocumented debug CGI endpoint in T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03 allows unauthenticated attackers to execute arbitrary system commands as root via supplying a crafted HTTP query string.
Awaiting analysis
This vulnerability is currently awaiting analysis.