CVE-2026-4499

Severity CVSS v4.0:
MEDIUM
Type:
CWE-77 Command Injection
Publication date:
20/03/2026
Last modified:
20/03/2026

Description

A vulnerability was determined in D-Link DIR-820LW 2.03. Affected is the function ssdpcgi_main of the component SSDP. Executing a manipulation can lead to os command injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.