LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-4227

lb-link · bl-wr9000 firmware

Published
CVSS8.8
Severityhigh
WeaknessCWE-119
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

A security vulnerability has been detected in LB-LINK BL-WR9000 2.4.9. The impacted element is the function sub_44D844 of the file /goform/get_hidessid_cfg. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-4227

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-4227.