LIVE · cybersecurity feed
Live wire
cve recordcritical

CVE-2026-4181

dlink · dir-816 firmware

Published
CVSS9.8
Severitycritical
WeaknessCWE-119
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

A security flaw has been discovered in D-Link DIR-816 1.10CNB05. This affects an unknown function of the file /goform/form2RepeaterStep2.cgi of the component goahead. The manipulation of the argument key1/key2/key3/key4/pskValue results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks. This vulnerability only affects products that are no longer supported by the maintainer.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-4181

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-4181.