Information Disclosure Vulnerability in D-Link DIR-X1860Z Router
CVE-2026-94050
5.3MEDIUM
What is CVE-2026-94050?
A vulnerability has been identified in the D-Link DIR-X1860Z router, specifically in the ubus JSON-RPC interface functions routerd.wificfg_get and routerd.get_rand_key. This vulnerability allows unauthorized information disclosure to an attacker within the local network. The risk is heightened for versions of the router firmware that are no longer supported by D-Link. Users are encouraged to upgrade to version 1.0.7.260821.161908 or higher to remediate this issue, ensuring the continued security of their network.
Affected Version(s)
DIR-X1860Z 1.0.2.220120.165402
DIR-X1860Z 1.0.7.260821.161908