SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-90693

CRITICAL · CVSS 9.9 EPSS 0.47% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

A critical stack-based buffer overflow vulnerability exists in the WAN Settings component of D-Link DIR-878 routers, specifically in the SetWan3Settings function. This flaw allows remote attackers to manipulate the Primary/Secondary argument, potentially leading to arbitrary code execution. Organizations using affected D-Link routers should prioritize patching this vulnerability to mitigate the risk of remote exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit
GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-90693
Severity
CRITICAL
CVSS
9.9
EPSS
0.47%

Original NVD Description

A flaw has been found in D-Link DIR-878 120B05. This impacts the function SetWan3Settings of the component WAN Settings. This manipulation of the argument Primary/Secondary causes stack-based buffer overflow. Remote exploitation of the attack is possible.