EIP-2026-101605

PRE-CVE

COMTREND CT-5624 Router - Root/Support Password Disclosure/Change

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-101605. PoCs published by Todor Donev.

AI-analyzed exploit summary This Perl script exploits an information disclosure and password change vulnerability in Comtrend CT-5624 and CT-5637 routers by directly accessing the 'password.cgi' endpoint without authentication. It can either disclose or change the root and support passwords via crafted HTTP requests.

Description

COMTREND CT-5624 Router - Root/Support Password Disclosure/Change

Exploits (1)

exploitdb WORKING POC
by Todor Donev · perlwebappshardware
https://www.exploit-db.com/exploits/18101

This Perl script exploits an information disclosure and password change vulnerability in Comtrend CT-5624 and CT-5637 routers by directly accessing the 'password.cgi' endpoint without authentication. It can either disclose or change the root and support passwords via crafted HTTP requests.

Classification
Working Poc 95%
Attack Type
Info Leak | Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: Comtrend CT-5624/5637 Router (A011-306TSR-C01_R03, A111-312BTC-C01_R12)
No auth needed
Prerequisites: Network access to the router's web interface
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026