216.73.216.123

CVE-2026-5215

· Published 31/03/2026 22:16 · Modified 01/04/2026 14:23

Labels: CVE-2026-5215 2026-03-31CVE-2026-5215CWE-266[email protected]

Essential information

Published
31/03/2026 22:16
Modified
01/04/2026 14:23
Author
Creator
CVSS
5.3 MEDIUM (v3) 5.3 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A vulnerability was identified in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. The impacted element is the function cgi_get_ipv6 of the file /cgi-bin/network_mgr.cgi. Such manipulation leads to improper access controls. The exploit is publicly available and might be used.

NVD status

Status
Undergoing Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
d-link / dns-120 cpe:2.3:a:d-link:dns-120:*:*:*:*:*:*:*:*
d-link / dns-315l cpe:2.3:a:d-link:dns-315l:*:*:*:*:*:*:*:*
d-link / dns-320 cpe:2.3:a:d-link:dns-320:*:*:*:*:*:*:*:*
d-link / dns-321 cpe:2.3:a:d-link:dns-321:*:*:*:*:*:*:*:*
d-link / dns-322l cpe:2.3:a:d-link:dns-322l:*:*:*:*:*:*:*:*
d-link / dns-323 cpe:2.3:a:d-link:dns-323:*:*:*:*:*:*:*:*
d-link / dns-340l cpe:2.3:a:d-link:dns-340l:*:*:*:*:*:*:*:*
d-link / dns-726-4 cpe:2.3:a:d-link:dns-726-4:*:*:*:*:*:*:*:*
d-link / dns-1100-4 cpe:2.3:a:d-link:dns-1100-4:*:*:*:*:*:*:*:*
d-link / dns-1200-05 cpe:2.3:a:d-link:dns-1200-05:*:*:*:*:*:*:*:*
d-link / dns-1550-04 cpe:2.3:a:d-link:dns-1550-04:*:*:*:*:*:*:*:*

References