PT-2026-25556 · D Link · D-Link Dir-816

Pjqwudi

·

Published

2026-03-02

·

Updated

2026-03-16

·

CVE-2026-4182

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions D-Link DIR-816 version 1.10CNB05
Description A weakness exists in D-Link DIR-816 version 1.10CNB05. The issue affects an unknown function within the /goform/form2Wl5RepeaterStep2.cgi file of the goahead component. Manipulation of the key1/key2/key3/key4/pskValue argument results in a stack-based buffer overflow. Remote exploitation is possible, and a public exploit is available. This vulnerability impacts products that are no longer supported by the maintainer.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Buffer Overflow

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2026-04454
CVE-2026-4182

Affected Products

D-Link Dir-816