CVE-2026-2194
- EPSS 0.03%
- Veröffentlicht 08.02.2026 23:32:08
- Zuletzt bearbeitet 29.04.2026 01:00:01
A flaw has been found in D-Link DI-7100G C1 24.04.18D1. This affects the function start_proxy_client_email. Executing a manipulation can lead to command injection. The attack can be executed remotely. The exploit has been published and may be used.
CVE-2026-2193
- EPSS 0.1%
- Veröffentlicht 08.02.2026 23:15:49
- Zuletzt bearbeitet 11.02.2026 18:37:22
A vulnerability was detected in D-Link DI-7100G C1 24.04.18D1. Affected by this issue is the function set_jhttpd_info. Performing a manipulation of the argument usb_username results in command injection. Remote exploitation of the attack is possible.
CVE-2025-11339
- EPSS 0.5%
- Veröffentlicht 06.10.2025 16:32:09
- Zuletzt bearbeitet 19.11.2025 21:47:37
A vulnerability has been found in D-Link DI-7100G C1 up to 20250928. This issue affects the function sub_4BD4F8 of the file /webchat/hi_block.asp of the component jhttpd. The manipulation of the argument popupId leads to buffer overflow. The attack c...
CVE-2025-11338
- EPSS 0.54%
- Veröffentlicht 06.10.2025 16:02:08
- Zuletzt bearbeitet 19.11.2025 21:48:49
A flaw has been found in D-Link DI-7100G C1 up to 20250928. This vulnerability affects the function sub_4C0990 of the file /webchat/login.cgi of the component jhttpd. Executing manipulation of the argument openid can lead to buffer overflow. It is po...
CVE-2025-11335
- EPSS 0.06%
- Veröffentlicht 06.10.2025 12:32:09
- Zuletzt bearbeitet 29.04.2026 01:00:01
A weakness has been identified in D-Link DI-7100G C1 up to 20250928. Affected by this vulnerability is the function sub_46409C of the file /msp_info.htm?flag=qos of the component jhttpd. This manipulation of the argument iface causes command injectio...