CVE-2026-4207: D-Link DNS-1550-04 system_mgr.cgi cgi_ntp_time command injection
A vulnerability was determined in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. This impacts the function cgidevice/cgismstest/cgifirmwareupload/cgintptime of the file /cgi-bin/systemmgr.cgi. Executing a manipulation can lead to command injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4207?
CVE-2026-4207 is categorized as a critical vulnerability due to the potential remote command injection.
How do I fix CVE-2026-4207?
To fix CVE-2026-4207, update your D-Link device to the latest firmware version released after February 5, 2026.
What systems are affected by CVE-2026-4207?
CVE-2026-4207 affects multiple D-Link models including DNS-120, DNS-315L, and DNS-1550-04.
What type of vulnerability is CVE-2026-4207?
CVE-2026-4207 is a command injection vulnerability that can allow an attacker to execute arbitrary commands.
Can CVE-2026-4207 be exploited remotely?
Yes, CVE-2026-4207 can be exploited remotely by unauthorized users to gain control of the affected D-Link devices.