Skip to content
CVSS 7.2 · HIGH

CVE-2026-7856

A flaw has been found in D-Link DI-8100 16.07.26A1. This affects an unknown part of the file /url_member.asp of the component Web Management Interface. Executing a manipulation of the argument Name can lead to buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.

Ver en NVD

Análisis

This is a vulnerability in a legacy D-Link DI-8100 enterprise router. While the flaw allows a remote buffer overflow and an exploit exists, this specific hardware is not widely used in the modern Mexican developer stack or common cloud/server environments.

Severidad

Puntaje: 7.2(HIGH)
Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
AV: NETWORK
AC: LOW
PR: HIGH
UI: NONE
S: UNCHANGED
C: HIGH
I: HIGH
A: HIGH
Tipo de falla (CWE): CWE-119CWE-120

EPSS

Probabilidad de explotación (próx. 30 días): 0.0006 (0.1%)
Percentil: 17.1%
EPSS: 2026-05-06

Afecta

dlink:di-8100_firmwaredlink:di-8100

Descripción técnica

A flaw has been found in D-Link DI-8100 16.07.26A1. This affects an unknown part of the file /url_member.asp of the component Web Management Interface. Executing a manipulation of the argument Name can lead to buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.

Publicada: 5/5/2026, 20:16:41
Última modificación: 6/5/2026, 17:36:03

Referencias

InicioEventosBlogRecursosEquipo