CVE-2026-2142: D-Link DIR-823X set_qos sub_420688 os command injection
A weakness has been identified in D-Link DIR-823X 250416. This vulnerability affects the function sub420688 of the file /goform/setqos. Executing a manipulation can lead to os command injection. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2142?
CVE-2026-2142 is considered a high-severity vulnerability due to the potential for remote exploitation.
How do I fix CVE-2026-2142?
To mitigate CVE-2026-2142, it is recommended to update the D-Link DIR-823X to the latest firmware provided by the vendor.
What type of vulnerability is CVE-2026-2142?
CVE-2026-2142 is categorized as an OS command injection vulnerability.
Can CVE-2026-2142 be exploited remotely?
Yes, CVE-2026-2142 can be exploited remotely, allowing attackers to execute commands on the affected system.
Which products are affected by CVE-2026-2142?
CVE-2026-2142 specifically affects the D-Link DIR-823X router.