CVE-2026-90881: D-Link Dir-882

Medium severity, CVSS 5.3. EPSS: 0.8% chance of exploitation in the next 30 days.

A weakness has been identified in D-Link DIR-882 up to 20260814. Impacted is the function main of the file /HNAP1/dllog.cgi of the component CGI Binary. Executing a manipulation can lead to information disclosure. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks.

Affected products

  • D-Link Dir-882: version 20260814 only

Published 2026-09-15. Last modified 2026-09-17.