CVE-2026-5628Disclosure(belkin / f9k1015)

LOWCVSS 7.4 · HIGH

Exploit discussion active in current signal (6 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A security vulnerability has been detected in Belkin F9K1015 1.00.10. Impacted is the function formSetSystemSettings of the file /goform/formSetSystemSettings of the component Setting Handler. The manipulation of the argument webpage leads to stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-121

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • f9k1015
  • f9k1015_firmware

Threat summary

  • Public PoC is present in monitored signal
  • 7 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • General: 3 classified signals
  • Peaked at 6 mentions on most recent observed day (2026-04-06)
  • 7 total mentions across 2 days

Affected systems

Vendors
Products
f9k1015f9k1015_firmware

2 versions affected across 2 products

Deep dive

Activity timeline7 mentions / 2d
02356Mentions · 2026-04-05: 1Mentions · 2026-04-06: 6PoC Mentioned / Linked · 2026-04-06: 1Technical Details · 2026-04-06: 404-0504-06
Signal classification2 categories
Disclosure
457.1%
General
342.9%
Referenced assets7 URLs
Classification over time
DateTotalLabels
2026-04-051
General1
2026-04-066
Disclosure4General2
Full discourse7 posts
  • CTIWatch@ctiwatchcloud
    General

    🔍 Today's Top Vulnerabilities 🔴 CVE-2019-25687 | CVSS 9.8 🟠 CVE-2026-5613 | CVSS 8.8 🟠 CVE-2026-5628 | CVSS 8.8 🔗 http://ctiwatch.cloud/vulnerabilities #CVE #Vulnerability #ThreatIntel

    Post summary

    The post simply lists three CVEs with their CVSS scores and a link to a vulnerability portal, providing no further details or actionable information.

    0000036
    5.6K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-5628 - Belkin F9K1015 Setting formSetSystemSettings stack-based overflow Intel Report: https://ift.tt/rj6LnJ7

    Post summary

    The alert reports CVE-2026-5628, a stack-based overflow in Belkin F9K1015, without providing PoC, exploit, patch, or exploitation details.

    0000041
    281 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🟠 CVE-2026-5628 - High A security vulnerability has been detected in Belkin F9K1015 1.00.10. Impacted is the function formSetSystemSettings of the file /goform/formSetSystemSettings of the component Setting Handler.... https://www.thehackerwire.com/vulnerability/CVE-2026-5628/ https://t.co/tfQdmtwHoV

    Post summary

    The post announces a high‑severity vulnerability (CVE‑2026‑5628) in Belkin F9K1015’s formSetSystemSettings handler, but no PoC, exploit code, remediation, or active exploitation details are provided.

    0000048
    164 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-5628 A security vulnerability has been detected in Belkin F9K1015 1.00.10. Impacted is the function formSetSystemSettings of the file /goform/formSetSystemSettings of the co… https://www.cve.org/CVERecord?id=CVE-2026-5628 ----- Traducción: CVE-2026-5628 Se … http://infoflow.cloud`

    Post summary

    The text announces CVE-2026-5628, detailing the affected function and file in a Belkin device, without providing proof of concept, exploit code, or evidence of active exploitation.

    0000026
    67 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-5628 A security vulnerability has been detected in Belkin F9K1015 1.00.10. Impacted is the function formSetSystemSettings of the file /goform/formSetSystemSettings of the co… https://www.cve.org/CVERecord?id=CVE-2026-5628

    Post summary

    The post merely reports the existence of CVE-2026-5628 in a Belkin device, providing minimal technical detail but no evidence of exploitation, PoC, or remediation.

    00000207
    57.0K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-5628: HIGH] Critical security vulnerability found in Belkin F9K1015 1.00.10 could allow remote attacks. Exploit disclosed publicly as vendor didn't respond to notification.#cve,CVE-2026-5628,#cybersecurity https://cvefind.com/CVE-2026-5628

    Post summary

    A critical flaw (CVE‑2026‑5628) was found in Belkin F9K1015 firmware, with an exploit publicly disclosed, but no patches or evidence of active exploitation reported.

    0000035
    619 followersView on X
  • VulDB 🛡@vuldb
    General

    There is a new vulnerability with elevated criticality in Belkin F9K1015 (CVE-2026-5628) https://vuldb.com/vuln/355416

    Post summary

    A newly reported critical vulnerability (CVE-2026-5628) in Belkin F9K1015 is noted, but the message contains only limited information with no PoC, exploit details, or mitigation steps.

    0000099
    2.1K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWbelkinf9k1015---
OSbelkinf9k1015_firmware1.00.10--

Explore more