Security Advisory

CVE-2026-86295

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-09-07 10:15:09
Last updated 2026-09-08 15:46:57
Assigner VulDB
CVSS score 8.3
State PUBLISHED

Description

A vulnerability was found in D-Link DIR-895L A1_102b07. This affects the function sendACK of the file udhcpcd/serverpacket.c of the component udhcpcd. The manipulation of the argument Hostname results in command injection. The attack can be executed remotely. The exploit has been made public and could be used.