← Terug naar overzicht

A vulnerability has been identified in D-Link DSM-G600 version 1.01 affecting the /load_file.cgi file within the Multipart Handler component. The flaw allows an attacker to trigger an out-of-bounds write through manipulation of an unknown function. The attack can be launched remotely without physical access to the device. A public exploit has already been released, increasing the risk of active exploitation. The vulnerability is tracked as CVE-2026-82680 and has been assigned a high criticality rating. D-Link network storage devices running the affected firmware version are at risk. Users and administrators are advised to monitor for patches or mitigations from D-Link.

Affected products

  • D-Link DSM-G600 1.01

Related CVE's

  • CVE-2026-82680

Categories

  • Mobile & IoT
  • Network Infrastructure
  • Zero-Day Vulnerabilities