CVE-2020-9278: D-Link DSL-2640b Firmware

Critical severity, CVSS 9.1. EPSS: 1.6% chance of exploitation in the next 30 days.

An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. The device can be reset to its default configuration by accessing an unauthenticated URL.

Affected products

  • D-Link DSL-2640b Firmware: version eu_4.01b only

Published 2020-04-20. Last modified 2026-06-17.