CVE-2026-8346Disclosure(dlink / dir-816)

LOWCVSS 8.8 · HIGH

Exploit discussion active in current signal (2 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A vulnerability was detected in D-Link DIR-816 1.10CNB05_R1B011D88210. This affects the function portForward. Performing a manipulation of the argument ip_address results in command injection. The attack can be initiated remotely. The exploit is now public and may be used.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-77

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • dir-816
  • dir-816_firmware

Threat summary

  • Public PoC is present in monitored signal
  • 2 mentions across 1 observed day

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
dir-816dir-816_firmware

2 versions affected across 2 products

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-05-12: 2PoC Mentioned / Linked · 2026-05-12: 1Technical Details · 2026-05-12: 105-12
Signal classification2 categories
Disclosure
150.0%
PoC
150.0%
Referenced assets1 URL
By indicator
Full discourse2 posts
  • White Rabbitx 🏴‍☠️@TheRabbitPy
    PoC

    🧨 CVE‑2026‑8346 in D‑Link DIR‑816 1.10CNB05_R1B011D88210: command injection via portForward(ip_address), remotely exploitable, public PoC. #CVE‑2026‑8346 #DLink #CommandInjection #RouterSecurity #IoT #HomeLab https://nvd.nist.gov/vuln/detail/CVE-2026-8346

    Post summary

    The post announces CVE‑2026‑8346 in a D‑Link DIR‑816 router, highlights a remotely exploitable command injection via portForward, and notes a public PoC is available.

    00000115
    1.3K followersView on X
  • CVEarity@CVEarity
    Disclosure

    ⚡ New CVE Alert: CVE-2026-8346 📊 Severity: 6.3 🚨 Risk Level: Medium 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-8346 #CVE-2026-8346 #CVE #Medium #CyberSecurity #InfoSec https://t.co/dgsJgTb5Ja

    Post summary

    The tweet announces the new vulnerability CVE-2026-8346, noting its medium severity and general product impact but providing no technical or remediation details.

    0000055
    158 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWdlinkdir-816a2--
OSdlinkdir-816_firmware1.10cnb05_r1b011d88210--

Explore more