Skip to content
CVSS 7.5 · HIGH

CVE-2026-6947

DWM-222W USB Wi-Fi Adapter developed by D-Link has a Brute-Force Protection Bypass vulnerability, allowing unauthenticated adjacent network attackers to bypass login attempt limits to perform brute-force attacks to gain control over the device.

View on NVD

Analysis

This vulnerability affects a specific model of D-Link USB Wi-Fi adapter and involves a brute-force protection bypass. It is niche hardware firmware that does not impact server environments, development tools, or common consumer operating systems used by the community.

Severity

Score: 7.5(HIGH)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
AV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: UNCHANGED
C: NONE
I: HIGH
A: NONE
Weakness (CWE): CWE-307

EPSS

Probability of exploitation (next 30 days): 0.0006 (0.1%)
Percentile: 16.8%
EPSS: 2026-05-06

Technical description

DWM-222W USB Wi-Fi Adapter developed by D-Link has a Brute-Force Protection Bypass vulnerability, allowing unauthenticated adjacent network attackers to bypass login attempt limits to perform brute-force attacks to gain control over the device.

Published: 4/24/2026, 4:16:23 AM
Last modified: 4/24/2026, 2:39:28 PM

References

HomeEventsBlogResourcesTeam