Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-4226

Опубликовано: 16 мар. 2026
Источник: nvd
CVSS3: 8.8
CVSS3: 9.8
CVSS2: 9
EPSS Низкий

Описание

A weakness has been identified in LB-LINK BL-WR9000 2.4.9. The affected element is the function sub_44E8D0 of the file /goform/get_virtual_cfg. Executing a manipulation can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:lb-link:bl-wr9000_firmware:2.4.9:*:*:*:*:*:*:*
cpe:2.3:h:lb-link:bl-wr9000:-:*:*:*:*:*:*:*

EPSS

Процентиль: 31%
0.00119
Низкий

8.8 High

CVSS3

9.8 Critical

CVSS3

9 Critical

CVSS2

Дефекты

CWE-119
CWE-787

Связанные уязвимости

CVSS3: 8.8
github
25 дней назад

A weakness has been identified in LB-LINK BL-WR9000 2.4.9. The affected element is the function sub_44E8D0 of the file /goform/get_virtual_cfg. Executing a manipulation can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 9.8
fstec
около 1 месяца назад

Уязвимость функции sub_44E8D0() файла /goform/get_virtual_cfg микропрограммного обеспечения маршрутизаторов LB-LINK BL-WR9000, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 31%
0.00119
Низкий

8.8 High

CVSS3

9.8 Critical

CVSS3

9 Critical

CVSS2

Дефекты

CWE-119
CWE-787