在 D-Link DIR-868L 2.01b05 中确认存在一个漏洞。该问题影响认证处理组件中 /webfa_authentication.cgi 文件的 strcpy 函数。通过操纵 id/password 参数,可导致基于栈的缓冲区溢出。该攻击可远程执行,且利用方法已公开披露,可能被利用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-93958 | 9.1 CRITICAL | D-Link R95 DHMAPI ssi system os command injection |
| CVE-2026-94036 | 8.8 HIGH | D-Link DIR-X1860/DIR-X1860Z routerd ubus access control |
| CVE-2026-94050 | 4.3 MEDIUM | D-Link DIR-X1860Z ubus JSON-RPC interface routerd.get_rand_key information disclosure |
No comments yet