Unrated severityNVD Advisory· Published Feb 8, 2026· Updated Feb 23, 2026
D-Link DI-7100G C1 set_jhttpd_info command injection
CVE-2026-2193
Description
A vulnerability was detected in D-Link DI-7100G C1 24.04.18D1. Affected by this issue is the function set_jhttpd_info. Performing a manipulation of the argument usb_username results in command injection. Remote exploitation of the attack is possible.
Affected products
2- D-Link/DI-7100G C1v5Range: 24.04.18D1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- vuldb.commitrethird-party-advisory
- github.com/glkfc/IoT-Vulnerability/blob/main/D-Link/Dlink_4.mdmitrerelated
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
- www.dlink.commitreproduct
News mentions
0No linked articles in our index yet.