← Zuruck zu CVEs
CVE-2026-7248
CRITICAL9.8
Beschreibung
A vulnerability was found in D-Link DI-8100 16.07.26A1. This affects the function tgfile_htm of the file tgfile.htm of the component CGI Endpoint. The manipulation of the argument fn results in buffer overflow. The attack can be executed remotely. The exploit has been made public and could be used.
CVE Details
CVSS v3.1 Bewertung9.8
SchweregradCRITICAL
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht4/28/2026
Zuletzt geandert4/30/2026
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
dlink:di-8100dlink:di-8100_firmware
Schwachen (CWE)
CWE-119CWE-120
Referenzen
https://vuldb.com/submit/802869(cna@vuldb.com)
https://vuldb.com/vuln/359857(cna@vuldb.com)
https://vuldb.com/vuln/359857/cti(cna@vuldb.com)
https://www.dlink.com/(cna@vuldb.com)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.