CVE-2026-12174: D-Link DCS-935L HTTP rhea snprintf format string

Published Jun 13, 2026
·
Updated

A security vulnerability has been detected in D-Link DCS-935L 1.10.01. This issue affects the function snprintf of the file /web/cgi-bin/greece/rhea of the component HTTP Handler. Such manipulation of the argument data leads to format string. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.

Affected Software

3 affected components
D-Link DCS-935L=1.10.01
All of the following
Dlink Dcs-935l Firmware=1.10.01
Dlink Dcs-935l

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Compensating control

    Restrict network access to the affected D-Link DCS-935L device (especially its web/management interface such as /web/cgi-bin/) to trusted IP addresses only, or otherwise isolate the device from untrusted networks until a vendor fix is available.

  2. Operational

    Monitor D-Link advisories for a firmware update addressing the snprintf format-string vulnerability in DCS-935L 1.10.01 and apply the vendor-provided firmware update as soon as it is released. Until patched, consider removing the device from exposure to untrusted networks and inspect logs for signs of exploitation.

Event History

Jun 13, 2026
CVE Published
via MITRE·08:15 PM
Data Sourced
via MITRE·08:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:16 PM
DescriptionSeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2026-12174?

CVE-2026-12174 has a severity rating of high with a score of 8.8.

2

How do I fix CVE-2026-12174?

To fix CVE-2026-12174, it is recommended to update the D-Link DCS-935L firmware to the latest version provided by the vendor.

3

What components are affected by CVE-2026-12174?

CVE-2026-12174 affects the HTTP Handler component, specifically the function snprintf in the file /web/cgi-bin/greece/rhea.

4

Is CVE-2026-12174 exploitable remotely?

Yes, CVE-2026-12174 can be exploited remotely, making it critical to address.

5

What type of vulnerability is CVE-2026-12174?

CVE-2026-12174 is classified as a buffer overflow vulnerability.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203