CVE detail
CVE-2026-8345
A security vulnerability has been detected in D-Link DIR-816 1.10CNB05_R1B011D88210. Affected by this issue is the function sub_445E7C of the file /goform/singlePortForward. Such manipulation of the argument ip_address leads to command injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 17.9 · diversity 11.5 · KEV 0.0 · OTX 0.0 · PoC 4.5
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
5 source links · newest first
- https://www.dlink.com/www.dlink.com
No excerpt available.
Vendor Advisorywww.dlink.comMay 11, 2026, 11:20 PM - https://vuldb.com/vuln/362661/ctivuldb.com
No excerpt available.
Exploitvuldb.comMay 11, 2026, 11:20 PM - https://vuldb.com/vuln/362661vuldb.com
No excerpt available.
Exploitvuldb.comMay 11, 2026, 11:20 PM - https://vuldb.com/submit/811379vuldb.com
No excerpt available.
Exploitvuldb.comMay 11, 2026, 11:20 PM No excerpt available.
Exploitgithub.comMay 11, 2026, 11:20 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
1 repository references · best confidence 0.90 · max 0 stars
- lipenghai/iot_bugHigh confidencegithubNVD Exploit reference0 starsDiscovered Jul 20, 2026, 6:20 PM
NVD labels the source link as Exploit; this is not independent verification of the repository's code.
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-8346CVSS 2.1 · Low
A vulnerability was detected in D-Link DIR-816 1.10CNB05_R1B011D88210. This affects the function portForward. Performing a manipulation of the argument ip_address results in comma…
- CVE-2026-8344CVSS 2.1 · Low
A weakness has been identified in D-Link DIR-816 1.10CNB05_R1B011D88210. Affected by this vulnerability is the function sub_445E7C of the file /goform/formDMZ.cgi. This manipulati…
- CVE-2025-45931CVSS 9.8 · Critical
An issue D-Link DIR-816-A2 DIR-816A2_FWv1.10CNB05_R1B011D88210 allows a remote attacker to execute arbitrary code via system() function in the bin/goahead file
- CVE-2025-5621CVSS 6.9 · Medium
A vulnerability has been found in D-Link DIR-816 1.10CNB05 and classified as critical. Affected by this vulnerability is the function qosClassifier of the file /goform/qosClassifi…
- CVE-2025-5620CVSS 6.9 · Medium
A vulnerability, which was classified as critical, was found in D-Link DIR-816 1.10CNB05. Affected is the function setipsec_config of the file /goform/setipsec_config. The manipul…
- CVE-2025-29743CVSS 6.5 · Medium
D-Link DIR-816 A2V1.1.0B05 was found to contain a command injection in /goform/delRouting.