CNNVD-202601-3366 Information

CNNVD ID

CNNVD-202601-3366

CVE-2026-23755

  • CNNVD Published: 2026-01-21

Description (Chinese)

D-Link D-View 8是中国友讯(D-Link)公司的一款综合网络管理软件。 D-Link D-View 8 2.0.1.107及之前版本存在代码问题漏洞,该漏洞源于安装程序中存在不受控制的搜索路径,可能导致DLL预加载和任意代码执行。

Description (English)

D-Link D-View 8 is a comprehensive network management software for the Chinese company D-Link. D-Link D-View 8 2.0.1.107 and previous versions have a code problem loophole, which stems from uncontrolled search paths in the installation process, which may lead to preloading of DLL and arbitrary code execution.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

友讯

Published

2026-01-21

Last Modified

2026-02-24

References

https://www.vulncheck.com/advisories/dlink-dview-8-installer-dll-preloading-via-uncontrolled-search-path https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10471 https://access.redhat.com/security/cve/cve-2026-23755

Patch

https://dview.dlink.com/freetrial

Share on: