CVE-2026-5611Disclosure(belkin / f9k1015)

LOWCVSS 7.4 · HIGH

Signal is active with 5 mentions in latest observed window

Immediate actions

  • Patch belkin f9k1015 systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was found in Belkin F9K1015 1.00.10. This affects the function formCrossBandSwitch of the file /goform/formCrossBandSwitch. Performing a manipulation of the argument webpage results in stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-121

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • f9k1015
  • f9k1015_firmware

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 2 classified signals
  • General: 2 classified signals
  • 5 total mentions across 1 day

Affected systems

Vendors
Products
f9k1015f9k1015_firmware

2 versions affected across 2 products

Deep dive

Activity timeline5 mentions / 1d
01345Mentions · 2026-04-06: 5Patch / Workaround · 2026-04-06: 1Technical Details · 2026-04-06: 404-06
Signal classification3 categories
Disclosure
240.0%
General
240.0%
Patch
120.0%
Referenced assets4 URLs
Full discourse5 posts
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-5611 - High A vulnerability was found in Belkin F9K1015 1.00.10. This affects the function formCrossBandSwitch of the file /goform/formCrossBandSwitch. Performing a manipulation of the argument webpage re... https://www.thehackerwire.com/vulnerability/CVE-2026-5611/ https://t.co/oyZaD96DEy

    Post summary

    The post announces a new vulnerability (CVE-2026-5611) in Belkin F9K1015 routers, noting a flaw in the formCrossBandSwitch function that allows manipulation of webpage arguments. No PoC, exploit tool, active exploitation, or patch information is provided.

    0000049
    164 followersView on X
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-5611 A vulnerability was found in Belkin F9K1015 1.00.10. This affects the function formCrossBandSwitch of the file /goform/formCrossBandSwitch. Performing a manipulation of… https://www.cve.org/CVERecord?id=CVE-2026-5611 ----- Traducción: CVE-2026-5611 Se … http://infoflow.cloud`

    Post summary

    CVE-2026-5611 is referenced with a brief technical description and a link to the CVE record, but no PoC, exploit, patch, or evidence of active exploitation is presented.

    0000034
    67 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-5611: HIGH] Vulnerability discovered in Belkin F9K1015 1.00.10 allows remote attackers to trigger stack-based buffer overflow via manipulation of the argument webpage in formCrossBandSwitch function.#cve,CVE-2026-5611,#cybersecurity https://cvefind.com/CVE-2026-5611

    Post summary

    The post announces a new stack-based buffer overflow vulnerability (CVE-2026-5611) in Belkin F9K1015 firmware that allows remote attackers to trigger an overflow by manipulating the argument webpage to the formCrossBandSwitch function.

    0000055
    619 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-5611 A vulnerability was found in Belkin F9K1015 1.00.10. This affects the function formCrossBandSwitch of the file /goform/formCrossBandSwitch. Performing a manipulation of… https://www.cve.org/CVERecord?id=CVE-2026-5611

    Post summary

    The snippet acknowledges CVE-2026-5611 in a Belkin device function but provides no actionable details such as exploits, patches, or technical depth.

    00000334
    57.0K followersView on X
  • DFIR Lab@DFIR_Lab
    Patch

    🚨 HIGH: CVE-2026-5611 (CVSS 8.8) - Stack-based buffer overflow in Belkin F9K1015 router v1.00.10. Remotely exploitable via formCrossBandSwitch function. Exploit public. Vendor unresponsive. Patch/replace affected devices immediately. #CVE #PatchNow

    Post summary

    The post alerts to a stack‑based buffer overflow in Belkin F9K1015 routers and urges users to patch or replace devices immediately, emphasizing the immediate risk but not providing an exploit or patch code.

    0000026
    1 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWbelkinf9k1015---
OSbelkinf9k1015_firmware1.00.10--

Explore more