Unrated severityNVD Advisory· Published Jul 20, 2026· Updated Jul 21, 2026
D-Link DNS-320 upload.php unrestricted upload
CVE-2026-16327
Description
A vulnerability was determined in D-Link DNS-320 1.0.2. This issue affects some unknown processing of the file /web/web_file/upload.php. Executing a manipulation of the argument File can lead to unrestricted upload. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized.
Affected products
1Patches
Vulnerability mechanics
References
6- ucn9h68n9289.feishu.cn/wiki/JJcTwHz7aiKeq6kSItMcoeSUnMcmitreexploit
- vuldb.com/cve/CVE-2026-16327mitrethird-party-advisory
- vuldb.com/submit/858455mitrethird-party-advisory
- vuldb.com/vuln/380693mitrevdb-entrytechnical-description
- vuldb.com/vuln/380693/ctimitresignaturepermissions-required
- www.dlink.commitreproduct
News mentions
0No linked articles in our index yet.