CVE-2026-4465: D-Link DIR-513 formSysCmd os command injection
A flaw has been found in D-Link DIR-513 1.10. The impacted element is an unknown function of the file /goform/formSysCmd. Executing a manipulation of the argument sysCmd can lead to os command injection. The attack may be launched remotely. The exploit has been published and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-4465?
CVE-2026-4465 is considered a high severity vulnerability due to its potential for remote command execution.
How do I fix CVE-2026-4465?
To fix CVE-2026-4465, upgrade the firmware of the D-Link DIR-513 device to the latest version that addresses this vulnerability.
Who is affected by CVE-2026-4465?
CVE-2026-4465 affects users of the D-Link DIR-513 device running firmware version 1.10.
Can CVE-2026-4465 be exploited remotely?
Yes, CVE-2026-4465 can be exploited remotely, allowing attackers to execute commands on the affected device.
What kind of attack can CVE-2026-4465 facilitate?
CVE-2026-4465 can facilitate OS command injection attacks, compromising the device's integrity and security.