CVE-2026-8346

HIGH WAF: High
CVSS 8.8 Published: 2026-05-12
CWE-77

A vulnerability was detected in D-Link DIR-816 1.10CNB05_R1B011D88210. This affects the function portForward. Performing a manipulation of the argument ip_address results in command injection. The attack can be initiated remotely. The exploit is now public and may be used.

WAF Coverage Analysis

Command Injection High WAF Coverage

OWASP: A03:2021 Injection

932xxx - Remote Code Execution

Affected Software

VendorProductVersion
dlinkdir-816_firmware1.10cnb05_r1b011d88210

References

Back to CVE Database