D-Link DCS-935L是中国友讯(D-Link)公司的一款路由器。 D-Link DCS-935L 1.10.01及之前版本存在缓冲区错误漏洞,该漏洞源于HNAP Service组件中文件/web/cgi-bin/hnap/hnap_service的函数SetDeviceSettings对参数AdminPassword的操作,可能导致缓冲区溢出。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-8346 | 6.3 MEDIUM | D-Link DIR-816 portForward command injection |
| CVE-2026-8345 | 6.3 MEDIUM | D-Link DIR-816 singlePortForward sub_445E7C command injection |
| CVE-2026-8344 | 6.3 MEDIUM | D-Link DIR-816 formDMZ.cgi sub_445E7C command injection |
| CVE-2026-8273 | 4.7 MEDIUM | D-Link DNS-320 system_mgr.cgi cgi_merge_user os command injection |
| CVE-2026-8272 | 4.7 MEDIUM | D-Link DNS-320 webfile_mgr.cgi chown os command injection |
| CVE-2026-8271 | 4.7 MEDIUM | D-Link DNS-320 network_mgr.cgi cgi_upnp_edit os command injection |
No comments yet