Security Advisory

CVE-2026-90706

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-09-14 10:30:08
Last updated 2026-09-14 14:33:15
Assigner VulDB
CVSS score 6.6
State PUBLISHED

Description

A vulnerability was identified in D-Link DWR-M921 1.1.52. This impacts the function formWsc of the file /boafrm/formWsc. The manipulation of the argument targetAPSsid leads to os command injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be used.