Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-1532

Опубликовано: 28 янв. 2026
Источник: nvd
CVSS3: 2.4
CVSS3: 5.5
CVSS2: 2.2
EPSS Низкий

Описание

A vulnerability was identified in D-Link DCS-700L 1.03.09. The affected element is the function uploadmusic of the file /setUploadMusic of the component Music File Upload Service. The manipulation of the argument UploadMusic leads to path traversal. The attack can only be initiated within the local network. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:dlink:dcs-700l_firmware:*:*:*:*:*:*:*:*
Версия до 1.03.09 (включая)
cpe:2.3:h:dlink:dcs-700l:-:*:*:*:*:*:*:*

EPSS

Процентиль: 51%
0.00714
Низкий

2.4 Low

CVSS3

5.5 Medium

CVSS3

2.2 Low

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 2.4
github
7 месяцев назад

A vulnerability was identified in D-Link DCS-700L 1.03.09. The affected element is the function uploadmusic of the file /setUploadMusic of the component Music File Upload Service. The manipulation of the argument UploadMusic leads to path traversal. The attack can only be initiated within the local network. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 2.4
fstec
7 месяцев назад

Уязвимость службы Music File Upload Service микропрограммного обеспечения IP-камер D-Link DCS-700L, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 51%
0.00714
Низкий

2.4 Low

CVSS3

5.5 Medium

CVSS3

2.2 Low

CVSS2

Дефекты

CWE-22