← nejvýznamnější zprávy · všechny zprávy

EPSS 0.02 (nejvyšší)

D-Link Routers — Administrative Takeover and Command Injection Vulnerabilities

Classification: Severe, Solution: Temporary Fix, Exploit Maturity: Functional, CVSSv4.0: 9.4, CVEs: CVE-2026-93958, CVE-2026-94036, Summary: Security vulnerabilities affecting multiple D-Link router models can result in administrative compromise or command execution, and public exploit material is available. CVE-2026-93958 affects the D-Link R95 and allows OS command injection through the DHMAPI interface. The attack can be performed remotely and can result in execution of arbitrary commands on…

Číst originál na NCSC-FI →

CZ · EN/orig

D-Link FI

tg: zranitelnost

CVE v události 2

CVEhodnoceníKEVEPSS
CVE-2026-93958 9.4 4.0 · VulDB 9.1 3.1 · VulDB 9.1 3.0 · VulDB 0.02
CVE-2026-94036 8.8 3.1 · VulDB 8.8 3.0 · VulDB 8.7 4.0 · VulDB 0.00

Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE. Advisory v textu uvádí CVSS 9.4.