Critical RCE Vulnerability in Legacy D-Link DSL Routers Under Active Exploitation
Background A critical security vulnerability has been identified in legacy D-Link DSL gateway routers, tracked as CVE-2026-0625 with a CVSS score of 9.3. The vulnerability stems from improper sanitization of user-supplied input in the dnscfg.cgi endpoint, enabling unauthenticated command injection and remote code execution. Active exploitation of this flaw has been observed in the wild, […]
Critical RCE Vulnerability in Legacy D-Link DSL Routers Under Active Exploitation Read More »







