CVE-2026-19893

Summary

A vulnerability was identified in D-Link DIR-842 2.01.B04. This impacts an unknown function of the file /etc/vsftpd.conf of the component vsftpd. Such manipulation leads to incorrect default permissions. It is possible to launch the attack remotely. A high complexity level is associated with this attack. The exploitability is said to be difficult.

Affected Software

VendorProductVersion RangeStatus
D-LinkDIR-8422.01.B04affected

Weaknesses

  • CWE-276: Incorrect Default Permissions
  • CWE-266: Incorrect Privilege Assignment

References