Vulnerability Description
A vulnerability was determined in D-Link DGS-3420 1.50.018. This issue affects some unknown processing of the component System Information Settings Page. This manipulation of the argument System Name causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dlink | Dgs-3420-28Tc Firmware | 1.50.018 |
| Dlink | Dgs-3420-28Tc | - |
Related Weaknesses (CWE)
References
- https://vuldb.com/submit/797877Third Party AdvisoryVDB Entry
- https://vuldb.com/vuln/359606Third Party AdvisoryVDB Entry
- https://vuldb.com/vuln/359606/ctiPermissions RequiredVDB Entry
- https://www.dlink.com/Product
FAQ
What is CVE-2026-7026?
CVE-2026-7026 is a vulnerability with a CVSS score of 4.5 (MEDIUM). A vulnerability was determined in D-Link DGS-3420 1.50.018. This issue affects some unknown processing of the component System Information Settings Page. This manipulation of the argument System Name ...
How severe is CVE-2026-7026?
CVE-2026-7026 has been rated MEDIUM with a CVSS base score of 4.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-7026?
Check the references section above for vendor advisories and patch information. Affected products include: Dlink Dgs-3420-28Tc Firmware, Dlink Dgs-3420-28Tc.