CVE-2026-90692: D-Link DIR-878 Dynamic DNS IPv6 Settings SetDynamicDNSIPv6Settings stack-based overflow
Published Sep 14, 2026
·Updated
A vulnerability was detected in D-Link DIR-878 120B05. This affects the function SetDynamicDNSIPv6Settings of the component Dynamic DNS IPv6 Settings. The manipulation of the argument IPv6Address/Hostname results in stack-based buffer overflow. The attack may be launched remotely.
Affected Software
1 affected component
D-Link DIR-878=120B05
Event History
Sep 14, 2026
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What level of access does an attacker need?
The CVSS vector indicates network access and low privileges are required. No user interaction is required for exploitation.
2
How can I determine whether a device is in the reported affected scope?
The reported affected version is D-Link DIR-878 120B05. The available information does not establish whether other DIR-878 versions or other D-Link models are affected.