CVE-2026-5610
גבוהה 8.8
תיאור (מקור, אנגלית)
A vulnerability has been found in Belkin F9K1015 1.00.10. Affected by this issue is the function formWISP5G of the file /goform/formWISP5G. Such manipulation of the argument webpage leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
מדדים
- CVSS 3.1
-
8.8 (HIGH)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS 4.0
-
7.4 (HIGH)
מקור הציון: CNA
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X - EPSS — סבירות ניצול
- 1% (אחוזון 000) נכון ל-27/7/2026
- CWE
- CWE-119, CWE-121
מוצרים מושפעים
belkin: f9k1015 firmware; belkin: f9k1015
קישורים
- https://github.com/Litengzheng/vuldb_new/blob/main/Belkin%20F9K1015/vul_3/READ… ExploitThird Party Advisory
- https://vuldb.com/submit/785537 Third Party AdvisoryVDB Entry
- https://vuldb.com/vuln/355401 Third Party AdvisoryVDB Entry
- https://vuldb.com/vuln/355401/cti Permissions RequiredVDB Entry