CVE-2026-2194
- EPSS 0.04%
- Veröffentlicht 08.02.2026 23:32:08
- Zuletzt bearbeitet 11.02.2026 18:36:51
A flaw has been found in D-Link DI-7100G C1 24.04.18D1. This affects the function start_proxy_client_email. Executing a manipulation can lead to command injection. The attack can be executed remotely. The exploit has been published and may be used.
CVE-2026-2193
- EPSS 0.12%
- Veröffentlicht 08.02.2026 23:15:49
- Zuletzt bearbeitet 11.02.2026 18:37:22
A vulnerability was detected in D-Link DI-7100G C1 24.04.18D1. Affected by this issue is the function set_jhttpd_info. Performing a manipulation of the argument usb_username results in command injection. Remote exploitation of the attack is possible.
CVE-2025-11339
- EPSS 0.52%
- Veröffentlicht 06.10.2025 16:32:09
- Zuletzt bearbeitet 19.11.2025 21:47:37
A vulnerability has been found in D-Link DI-7100G C1 up to 20250928. This issue affects the function sub_4BD4F8 of the file /webchat/hi_block.asp of the component jhttpd. The manipulation of the argument popupId leads to buffer overflow. The attack c...
CVE-2025-11338
- EPSS 0.57%
- Veröffentlicht 06.10.2025 16:02:08
- Zuletzt bearbeitet 19.11.2025 21:48:49
A flaw has been found in D-Link DI-7100G C1 up to 20250928. This vulnerability affects the function sub_4C0990 of the file /webchat/login.cgi of the component jhttpd. Executing manipulation of the argument openid can lead to buffer overflow. It is po...
CVE-2025-11335
- EPSS 0.06%
- Veröffentlicht 06.10.2025 12:32:09
- Zuletzt bearbeitet 19.11.2025 21:48:27
A weakness has been identified in D-Link DI-7100G C1 up to 20250928. Affected by this vulnerability is the function sub_46409C of the file /msp_info.htm?flag=qos of the component jhttpd. This manipulation of the argument iface causes command injectio...