


Perceptive Security
SOC/SIEM Consultancy

A weakness has been identified in D-Link DI-8100 16.07.26A1. Affected is the function sprintf of the file /auto_reboot.asp of the component HTTP Handler. This m…
Published:
4 mei 2026 om 22:00:00
Alert date:
5 mei 2026 om 19:03:17
Source:
nvd.nist.gov
Network Infrastructure, Mobile & IoT
A buffer overflow vulnerability has been identified in D-Link DI-8100 router firmware version 16.07.26A1. The vulnerability affects the sprintf function in the /auto_reboot.asp file within the HTTP Handler component. Attackers can exploit this by manipulating the enable/time arguments, causing a buffer overflow condition. The vulnerability can be exploited remotely, making it particularly dangerous. Public exploits are already available, increasing the risk of active exploitation. This affects the device's web management interface and could potentially allow remote code execution.
Technical details
Mitigation steps:
Affected products:
D-Link DI-8100
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-7853
https://github.com/draw-ctf/report/blob/main/DI-8100/auto_reboot_asp_overflow.md
https://vuldb.com/submit/807837
https://vuldb.com/vuln/361130
https://vuldb.com/vuln/361130/cti
https://www.dlink.com/
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
