MEDIUM
D-Link DIR-823X Login sub_40AC74 excessive authentication
Published Jan 30, 2026
6.3
MEDIUMCVSS 4.0
EPSS 1.16%
Description
A vulnerability was identified in D-Link DIR-823X 250416. This vulnerability affects the function sub_40AC74 of the component Login. Such manipulation leads to improper restriction of excessive authentication attempts. The attack may be performed from remote. This attack is characterized by high complexity. It is stated that the exploitability is difficult. The exploit is publicly available and might be used.
Affected products
-
- Version 250416StatusaffectedConstraints-
- Version
AND
- 250416
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (5)
- https://github.com/master-abc/cve/issues/17 exploitissue-trackingIssue Tracking
- https://vuldb.com/?ctiid.343479 signaturepermissions-requiredPermissions RequiredVDB Entry
- https://vuldb.com/?id.343479 vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry
- https://vuldb.com/?submit.740886 third-party-advisoryThird Party AdvisoryVDB Entry
- https://www.dlink.com/ product
| Link | Providers | Tags |
|---|---|---|
| https://github.com/master-abc/cve/issues/17 | exploitissue-trackingIssue Tracking | |
| https://vuldb.com/?ctiid.343479 | signaturepermissions-requiredPermissions RequiredVDB Entry | |
| https://vuldb.com/?id.343479 | vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry | |
| https://vuldb.com/?submit.740886 | third-party-advisoryThird Party AdvisoryVDB Entry | |
| https://www.dlink.com/ | product |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Jan 30, 2026
Updated Feb 23, 2026
Reserved Jan 30, 2026
Link CVE-2026-1685
CISA Vulnrichment
Updated Jan 30, 2026