5.1
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A security flaw has been discovered in D-Link DNS-320 2.06B01. This affects the function delete/rename/copy/move/chmod/chown of the file /cgi-bin/webfile_mgr.cgi. The manipulation results in os command injection. The attack may be performed from remote. The exploit has been released to the public and may be used for attacks.
Basic Information
ID
CVE-2026-8272
Source
VulDB
Published
May 11, 2026 at 04:15
Affected Product
Vendor
D-Link
Product
DNS-320
Version
2.06B01
Affected Versions
D-Link DNS-320 2.06B01