Metrics
Affected Vendors & Products
Tue, 27 Jan 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 27 Jan 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
D-link
D-link dir-615 |
|
| Vendors & Products |
D-link
D-link dir-615 |
Mon, 26 Jan 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in D-Link DIR-615 up to 4.10. This impacts an unknown function of the file /wiz_policy_3_machine.php of the component Web Management Interface. Performing a manipulation of the argument ipaddr results in os command injection. It is possible to initiate the attack remotely. The exploit is now public and may be used. This vulnerability only affects products that are no longer supported by the maintainer. | |
| Title | D-Link DIR-615 Web Management wiz_policy_3_machine.php os command injection | |
| Weaknesses | CWE-77 CWE-78 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-01-26T23:32:08.743Z
Updated: 2026-01-27T21:28:54.376Z
Reserved: 2026-01-26T17:34:30.346Z
Link: CVE-2026-1448
Updated: 2026-01-27T21:28:50.436Z
Status : Awaiting Analysis
Published: 2026-01-27T00:15:50.573
Modified: 2026-01-27T14:59:34.073
Link: CVE-2026-1448
No data.