LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-8260

dlink · dcs-935l firmware

Published
CVSS8.8
Severityhigh
WeaknessCWE-119
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

A vulnerability was found in D-Link DCS-935L up to 1.10.01. The impacted element is the function SetDeviceSettings of the file /web/cgi-bin/hnap/hnap_service of the component HNAP Service. The manipulation of the argument AdminPassword results in buffer overflow. The attack can be executed remotely. The exploit has been made public and could be used.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-8260

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-8260.