CVE-2026-2063 | D-Link DIR-823X 250416 Web Management Interface /goform/set_ac_server os command injection (EUVD-2026-5598 / WID-SEC-2026-0340)
A vulnerability described as critical has been identified in D-Link DIR-823X 250416. This vulnerability affects unknown code of the file /goform/set_ac_server of the component Web Management Interface. The manipulation of the argument ac_server results in os command injection.
This vulnerability is reported as CVE-2026-2063. The attack can be launched remotely. Moreover, an exploit is present.