SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-90881

MEDIUM · CVSS 5.3 EPSS 0.41% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-15 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability exists in the D-Link DIR-882 router, specifically in the CGI Binary component, which can be exploited to disclose sensitive information through remote manipulation of the affected function. Organizations using this router model should prioritize patching or mitigating this issue, as publicly available exploits could facilitate attacks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit
GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-90881
Severity
MEDIUM
CVSS
5.3
EPSS
0.41%

Original NVD Description

A weakness has been identified in D-Link DIR-882 up to 20260814. Impacted is the function main of the file /HNAP1/dllog.cgi of the component CGI Binary. Executing a manipulation can lead to information disclosure. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks.