CVE-2026-2168
A flaw has been found in D-Link DWR-M921 1.1.50. This affects the function sub_419920 of the file /boafrm/formLtefotaUpgradeQuectel. This manipulation of the argument fota_url causes command injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.
Vendor
Product
CWE
Yayın Tarihi
2026-02-08 18:15:48
Güncelleme
2026-02-11 18:42:45
Source Identifier
cna@vuldb.com
KEV Date Added
-