


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was found in D-Link DI-8100 16.07.26A1. This affects the function tgfile_htm of the file tgfile.htm of the component CGI Endpoint. The manipulat…
Published:
27 april 2026 om 22:00:00
Alert date:
28 april 2026 om 10:02:18
Source:
nvd.nist.gov
Network Infrastructure, Mobile & IoT
A buffer overflow vulnerability (CVE-2026-7248) was discovered in D-Link DI-8100 firmware version 16.07.26A1. The vulnerability affects the tgfile_htm function in the CGI endpoint, where manipulation of the 'fn' argument leads to buffer overflow. The attack can be executed remotely and the exploit has been made publicly available, making this a high-priority security issue for affected D-Link router users.
Technical details
Mitigation steps:
Affected products:
D-Link DI-8100
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-7248
https://github.com/draw-ctf/report/blob/main/DI-8100/DI-8100_tgfile_htm_overflow.md
https://vuldb.com/submit/802869
https://vuldb.com/vuln/359857
https://vuldb.com/vuln/359857/cti
https://www.dlink.com/
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
