Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
7.3

CVE-2026-7856: D-Link DI-8100 Web Interface Name Argument Manipulation

CVE-2026-7856
Summary

A security flaw in the D-Link DI-8100's web interface can be exploited remotely, allowing an attacker to potentially take control of the device. This could lead to unauthorized access or other malicious activity. It's recommended to update the device to the latest available version to protect against this vulnerability.

Original title
A flaw has been found in D-Link DI-8100 16.07.26A1. This affects an unknown part of the file /url_member.asp of the component Web Management Interface. Executing a manipulation of the argument Name...
Original description
A flaw has been found in D-Link DI-8100 16.07.26A1. This affects an unknown part of the file /url_member.asp of the component Web Management Interface. Executing a manipulation of the argument Name can lead to buffer overflow. The attack can be launched remotely. The exploit has been published and may be used.
nvd CVSS2.0 8.3
nvd CVSS3.1 7.2
nvd CVSS4.0 7.3
Vulnerability type
CWE-119 Buffer Overflow
CWE-120 Classic Buffer Overflow
Published: 5 May 2026 · Updated: 15 Jun 2026 · First seen: 5 May 2026