GHSA-35x4-pwx2-h4wjHighCVSS 8.8
A security flaw has been discovered in D-Link DIR-X1860 and DIR-X1860Z up to 1.0.2.220120.165402....
🔗 CVE IDs covered (1)
📋 Description
A security flaw has been discovered in D-Link DIR-X1860 and DIR-X1860Z up to 1.0.2.220120.165402. The impacted element is an unknown function of the file /ubus of the component routerd. The manipulation of the argument passwd_set results in improper access controls. The attack must originate from the local network. The exploit has been released to the public and may be used for attacks.
🔗 References (9)
- https://nvd.nist.gov/vuln/detail/CVE-2026-94036
- https://pastebin.com/gzKNCCPV
- https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10513
- https://vuldb.com/cve/CVE-2026-94036
- https://vuldb.com/submit/947565
- https://vuldb.com/vuln/407965
- https://vuldb.com/vuln/407965/cti
- https://www.dlink.com
- https://github.com/advisories/GHSA-35x4-pwx2-h4wj