CVE-2026-2143
A security vulnerability has been detected in D-Link DIR-823X 250416. This issue affects some unknown processing of the file /goform/set_ddns of the component DDNS Service. The manipulation of the argument ddnsType/ddnsDomainName/ddnsUserName/ddnsPwd leads to os command injection. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.
Vendor
Product
CWE
Yayın Tarihi
2026-02-08 09:15:51
Güncelleme
2026-02-10 14:57:46
Source Identifier
cna@vuldb.com
KEV Date Added
-