PT-2026-96007 · D Link · Dir-X1860

·

CVE-2026-94050

·

Published

2026-09-20

·

Updated

2026-09-24

CVSS v3.1

4.3

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions D-Link DIR-X1860Z versions prior to 1.0.7.260821.161908
Description An issue exists in the ubus JSON-RPC interface where manipulation of the routerd.wificfg get and routerd.get rand key functions can lead to information disclosure. This attack requires the actor to be positioned within the local network.
Recommendations Upgrade to version 1.0.7.260821.161908.

Fix

Information Disclosure

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-94050

Affected Products

Dir-X1860