VYPR
Unrated severityNVD Advisory· Published Feb 8, 2026· Updated Feb 23, 2026

D-Link DI-7100G C1 set_jhttpd_info command injection

CVE-2026-2193

Description

A vulnerability was detected in D-Link DI-7100G C1 24.04.18D1. Affected by this issue is the function set_jhttpd_info. Performing a manipulation of the argument usb_username results in command injection. Remote exploitation of the attack is possible.

Affected products

2
  • Dlink/DI-7100Gllm-create
    Range: =24.04.18D1
  • D-Link/DI-7100G C1v5
    Range: 24.04.18D1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.