Scworld
Critical Vulnerability in D-Link Routers Exploited for Remote Code Execution
First seen 8 Jan 2026, 23:52 UTC
•
•85% similarity
•60.7
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
A critical vulnerability, tracked as CVE-2026-0625, has been identified in legacy D-Link DSL gateway routers, allowing unauthenticated attackers to execute arbitrary commands remotely. The flaw, which has a CVSS score of 9.3, is due to inadequate sanitization of DNS configuration parameters, enabling command injection through the 'dnscfg.cgi' endpoint. This vulnerability is currently being exploited in the wild.
ThreatCluster AI