Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-1532

Опубликовано: 28 янв. 2026
Источник: nvd
CVSS3: 2.4
CVSS3: 5.5
CVSS2: 2.2
EPSS Низкий

Описание

A vulnerability was identified in D-Link DCS-700L 1.03.09. The affected element is the function uploadmusic of the file /setUploadMusic of the component Music File Upload Service. The manipulation of the argument UploadMusic leads to path traversal. The attack can only be initiated within the local network. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:dlink:dcs-700l_firmware:*:*:*:*:*:*:*:*
Версия до 1.03.09 (включая)
cpe:2.3:h:dlink:dcs-700l:-:*:*:*:*:*:*:*

EPSS

Процентиль: 20%
0.00063
Низкий

2.4 Low

CVSS3

5.5 Medium

CVSS3

2.2 Low

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 2.4
github
10 дней назад

A vulnerability was identified in D-Link DCS-700L 1.03.09. The affected element is the function uploadmusic of the file /setUploadMusic of the component Music File Upload Service. The manipulation of the argument UploadMusic leads to path traversal. The attack can only be initiated within the local network. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 2.4
fstec
25 дней назад

Уязвимость службы Music File Upload Service микропрограммного обеспечения IP-камер D-Link DCS-700L, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 20%
0.00063
Низкий

2.4 Low

CVSS3

5.5 Medium

CVSS3

2.2 Low

CVSS2

Дефекты

CWE-22