CVE-2026-10206
D-Link DI-8400
A vulnerability was detected in D-Link DI-8400 up to 16.07.26A1. This affects an unknown function of the file /dbsrv.asp. Performing a manipulation of the argument str results in stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit is now public and may be used. The initial researcher advisory mentions contradicting parameter names to be affected.
- CVSS
- 7.4
- EPSS
- 0.50% 40.1% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.01