CVE-2026-4227Disclosure(lb-link / bl-wr9000)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A security vulnerability has been detected in LB-LINK BL-WR9000 2.4.9. The impacted element is the function sub_44D844 of the file /goform/get_hidessid_cfg. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120CWE-125

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • bl-wr9000
  • bl-wr9000_firmware

Threat summary

  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 4 mentions (2026-03-16); latest day: 1
  • 5 total mentions across 2 days

Affected systems

Vendors
Products
bl-wr9000bl-wr9000_firmware

2 versions affected across 2 products

Deep dive

Activity timeline5 mentions / 2d
01234Mentions · 2026-03-16: 4Mentions · 2026-04-13: 1Technical Details · 2026-03-16: 3Technical Details · 2026-04-13: 103-1604-13
Signal classification2 categories
Disclosure
480.0%
General
120.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-164
Disclosure4
2026-04-131
General1
Full discourse5 posts
  • David@DavidMarquet19
    General

    📌 Top CVEs recientes (CVSS>=7.0): 1. 💉 CVE-2026-4235 (CVSS: 7.3) 2. 💉 CVE-2026-4232 (CVSS: 7.3) 3. 🕷️ CVE-2026-4231 (CVSS: 7.3) 4. 💉 CVE-2026-4229 (CVSS: 7.3) 5. 🧱 CVE-2026-4227 (CVSS: 8.8) #CyberSecurity #CVE #Infosec

    Post summary

    A simple list of newly disclosed CVEs with their CVSS scores, lacking additional technical or exploit information.

    0000051
    165 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-4227: HIGH] Critical cybersecurity alert: Vulnerability found in LB-LINK BL-WR9000 2.4.9 /goform/get_hidessid_cfg. Buffer overflow exploit allows remote attacks. Vendor notified but no response.#cve,CVE-2026-4227,#cybersecurity https://cvefind.com/CVE-2026-4227

    Post summary

    The post alerts that CVE‑2026‑4227 is a critical buffer overflow in LB‑LINK BL‑WR9000 2.4.9, enabling remote attacks; the vendor has been notified but no patch or exploit details are provided.

    0000045
    601 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-4227 A security vulnerability has been detected in LB-LINK BL-WR9000 2.4.9. The impacted element is the function sub_44D844 of the file /goform/get_hidessid_cfg. The manipul… https://www.cve.org/CVERecord?id=CVE-2026-4227

    Post summary

    The text announces CVE-2026-4227 in LB‑LINK BL‑WR9000 2.4.9, identifying a specific affected function but provides no proof of concept, exploit details, active use, or patch information.

    00000151
    56.7K followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-4227 - High A security vulnerability has been detected in LB-LINK BL-WR9000 2.4.9. The impacted element is the function sub_44D844 of the file /goform/get_hidessid_cfg. The manipulation leads to buffer ov... https://www.thehackerwire.com/vulnerability/CVE-2026-4227/ https://t.co/tjjTRm4m72

    Post summary

    A buffer overflow vulnerability (CVE-2026-4227) was disclosed in the LB-LINK BL-WR9000 firmware, affecting a specific function, but no exploitation or patch information was provided.

    0000034
    136 followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    We have just added an important vulnerability affecting LB-LINK BL-WR9000 (CVE-2026-4227) https://vuldb.com/?id.351150

    Post summary

    The post announces that CVE-2026-4227, impacting LB‑LINK BL‑WR9000 routers, has been added to vuldb.org, but it supplies no technical details, PoC, or exploitation status.

    0000094
    2.1K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWlb-linkbl-wr9000---
OSlb-linkbl-wr9000_firmware2.4.9--

Explore more