CVE List

CVE-2026-2142

Critical 7.2

A weakness has been identified in D-Link DIR-823X 250416. This vulnerability affects the function sub_420688 of the file /goform/set_qos. Executing a manipulation can lead to os command injection. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks.

Published February 8, 2026.

Affected software

Get alerts for Dlink Dir-823x Firmware

Reference links