Medium severity5.6NVD Advisory· Published May 1, 2026· Updated May 6, 2026
CVE-2026-7554
CVE-2026-7554
Description
A vulnerability was determined in D-Link M60 up to 1.20B02. Affected by this issue is some unknown functionality of the file /usr/bin/httpd. This manipulation causes weak password recovery. The attack can be initiated remotely. A high degree of complexity is needed for the attack. The exploitation is known to be difficult. The exploit has been publicly disclosed and may be utilized.
Affected products
2- cpe:2.3:o:dlink:m60_firmware:1.20b02:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.yuque.com/iam0range/rle72q/dhs1zsbgtm1ne0y1nvdExploitMitigationThird Party Advisory
- vuldb.com/submit/805642nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/360362nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/360362/ctinvdPermissions RequiredVDB Entry
- www.dlink.comnvdProduct
News mentions
0No linked articles in our index yet.