CVE-2026-19893: D-Link Dir-842

Low severity, CVSS 3.1. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability was identified in D-Link DIR-842 2.01.B04. This impacts an unknown function of the file /etc/vsftpd.conf of the component vsftpd. Such manipulation leads to incorrect default permissions. It is possible to launch the attack remotely. A high complexity level is associated with this attack. The exploitability is said to be difficult.

Affected products

  • D-Link Dir-842: version 2.01.B04 only

Published 2026-08-15. Last modified 2026-08-20.