Skip to content
CVSS 7.2 · HIGH

CVE-2026-7856

A flaw has been found in D-Link DI-8100 16.07.26A1. This affects an unknown part of the file /url_member.asp of the component Web Management Interface. Executing a manipulation of the argument Name can lead to buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.

View on NVD

Analysis

This is a vulnerability in a legacy D-Link DI-8100 enterprise router. While the flaw allows a remote buffer overflow and an exploit exists, this specific hardware is not widely used in the modern Mexican developer stack or common cloud/server environments.

Severity

Score: 7.2(HIGH)
Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
AV: NETWORK
AC: LOW
PR: HIGH
UI: NONE
S: UNCHANGED
C: HIGH
I: HIGH
A: HIGH
Weakness (CWE): CWE-119CWE-120

EPSS

Probability of exploitation (next 30 days): 0.0006 (0.1%)
Percentile: 17.1%
EPSS: 2026-05-06

Affects

dlink:di-8100_firmwaredlink:di-8100

Technical description

A flaw has been found in D-Link DI-8100 16.07.26A1. This affects an unknown part of the file /url_member.asp of the component Web Management Interface. Executing a manipulation of the argument Name can lead to buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.

Published: 5/5/2026, 8:16:41 PM
Last modified: 5/6/2026, 5:36:03 PM

References

HomeEventsBlogResourcesTeam