Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 28 Nov 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:h:dlink:dir-1260:-:*:*:*:*:*:*:* cpe:2.3:o:dlink:dir-1260_firmware:*:*:*:*:*:*:*:* |
|
| Metrics |
cvssV3_1
|
Fri, 21 Nov 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dlink dir-1260 Firmware
|
|
| CPEs | cpe:2.3:o:dlink:dir-1260_firmware:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Dlink dir-1260 Firmware
|
Fri, 07 Nov 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Dlink
Dlink dir-1260 |
|
| Vendors & Products |
Dlink
Dlink dir-1260 |
Thu, 06 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 06 Nov 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | D-Link DIR-1260 Wi-Fi router firmware versions up to and including v1.20B05 contain a command injection vulnerability within the web management interface that allows for unauthenticated attackers to execute arbitrary commands on the device with root privileges. The flaw specifically exists within the SetDest/Dest/Target arguments to the GetDeviceSettings form. The management interface is accessible over HTTP and HTTPS on the local and Wi-Fi networks and optionally from the Internet. | |
| Title | D-Link DIR-1260 <= v1.20B05 GetDeviceSettings Unauthenticated Command Injection | |
| Weaknesses | CWE-78 | |
| References |
|
|
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-05-14T02:06:57.726Z
Reserved: 2025-11-05T16:58:35.657Z
Link: CVE-2022-50596
Updated: 2025-11-06T20:28:12.303Z
Status : Analyzed
Published: 2025-11-06T20:15:40.450
Modified: 2025-11-28T17:00:26.797
Link: CVE-2022-50596
No data.
OpenCVE Enrichment
Updated: 2025-11-07T10:53:47Z