CVE-2020-26582: D-Link Dap-1360u Firmware
High severity, CVSS 8.8. EPSS: 4.8% chance of exploitation in the next 30 days.
D-Link DAP-1360U before 3.0.1 devices allow remote authenticated users to execute arbitrary commands via shell metacharacters in the IP JSON value for ping (aka res_config_action=3&res_config_id=18).
Affected products
- D-Link Dap-1360u Firmware: before 3.0.1 (fixed in 3.0.1)
Published 2020-10-06. Last modified 2026-06-17.