Scworld Critical Vulnerability in D-Link Routers Exploited for Remote Code Execution
Article Content
Browse articles
A critical vulnerability, tracked as CVE-2026-0625, has been identified in legacy D-Link DSL gateway routers, allowing unauthenticated attackers to execute arbitrary commands remotely. The flaw, which has a CVSS score of 9.3, is due to inadequate sanitization of DNS configuration parameters, enabling command injection through the 'dnscfg.cgi' endpoint. This vulnerability is currently being exploited in the wild.
Ask AI about this cluster
Answers cite the sources they use
Updated 183d ago How this analysis works
More articles in this cluster (2)
Following this threat?
Track Mirai, VulnCheck and CVE-2026-0625 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
KATARU IoT Malware Exploits Linux Vulnerabilities for DDoS Attacks The KATARU malware targets internet-exposed IoT devices using Telnet credential brute-forcing. Once access is gained, it attempts to escalate privileges using public Linux exploits, including CVE-2026-46300, CVE-2026-43284, and CVE-2026-31431. The malware combines Mirai-style DDoS capabilities with encrypted…
Critical Calix Router Flaw Exposes Home Networks to Attack A critical vulnerability in Calix GS5239XG routers, tracked as CVE-2026-75501, allows unauthenticated remote attackers to create port-forwarding rules, exposing internal devices to the internet. Discovered by researcher Brian Khan Quintana, the flaw stems from the router's UPnP control endpoint being accessible on the…