CVE-2026-4212: D-Link DNS-1550-04 download_mgr.cgi Downloads_Schedule_Info stack-based overflow
A security vulnerability has been detected in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. This affects the function DownloadsScheduleInfo of the file /cgi-bin/downloadmgr.cgi. Such manipulation leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4212?
CVE-2026-4212 is considered a critical stack-based buffer overflow vulnerability affecting multiple D-Link NAS devices.
How do I fix CVE-2026-4212?
To fix CVE-2026-4212, update the affected D-Link devices to the latest firmware version available as of February 2026.
Which D-Link products are impacted by CVE-2026-4212?
CVE-2026-4212 impacts several D-Link models including DNS-120, DNR-202L, DNS-315L, DNS-320, and others.
What are the potential risks of CVE-2026-4212?
Exploitation of CVE-2026-4212 could allow remote attackers to execute arbitrary code, potentially leading to unauthorized access or denial of service.
Is there a workaround for CVE-2026-4212?
While updating firmware is the best solution for CVE-2026-4212, temporarily isolating affected devices from the network can help mitigate the risk.