CVE-2026-4193
Description
A security vulnerability has been detected in D-Link DIR-823G 1.0.2B05. The affected element is the function GetDDNSSettings/GetDeviceDomainName/GetDeviceSettings/GetDMZSettings/GetFirewallSettings/GetGuestNetworkSettings/GetLanWanConflictInfo/GetLocalMacAddress/GetNetworkSettings/GetQoSSettings/GetRouterInformationSettings/GetRouterLanSettings/GetWanSettings/SetAccessCtlList/SetAccessCtlSwitch/SetDeviceSettings/SetGuestWLanSettings/SetIPv4FirewallSettings/SetNetworkSettings/SetNetworkTomographySettings/SetNTPServerSettings/SetRouterLanSettings/SetStaticClientInfo/SetStaticRouteSettings/SetWLanRadioSecurity/SetWPSSettings/UpdateClientInfo of the component goahead. Such manipulation leads to improper access controls. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
CVSS Details
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X Threat Intelligence
Weaknesses 2
Affected Products 2
References 11
- github.com https://github.com/wudipjq/my_vuln/blob/main/D-Link7/vuln_91/91.md
- github.com https://github.com/wudipjq/my_vuln/blob/main/D-Link7/vuln_92/92.md
- vuldb.com https://vuldb.com/?ctiid.351105
- vuldb.com https://vuldb.com/?id.351105
- vuldb.com https://vuldb.com/?submit.769835
- vuldb.com https://vuldb.com/?submit.769836
- vuldb.com https://vuldb.com/?submit.769837
- vuldb.com https://vuldb.com/?submit.769838
- vuldb.com https://vuldb.com/?submit.769839
- vuldb.com https://vuldb.com/?submit.769841
- dlink.com https://www.dlink.com/
Remediation
No remediation data recorded yet
Check vendor advisories and the NVD entry for patch availability.