A vulnerability has been found in D-Link DNS-320 1.0.2. Impacted is an unknown function of the file /web/jquery/uploader/multi_uploadify.php. The manipulation of the argument Filedata[] leads to unrestricted upload. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
History
Tue, 21 Jul 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in D-Link DNS-320 1.0.2. Impacted is an unknown function of the file /web/jquery/uploader/multi_uploadify.php. The manipulation of the argument Filedata[] leads to unrestricted upload. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used. | |
| Title | D-Link DNS-320 multi_uploadify.php unrestricted upload | |
| First Time appeared |
D-link
D-link dns-320 |
|
| Weaknesses | CWE-284 CWE-434 |
|
| CPEs | cpe:2.3:h:d-link:dns-320:*:*:*:*:*:*:*:* | |
| Vendors & Products |
D-link
D-link dns-320 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-07-21T13:30:36.026Z
Reserved: 2026-07-21T08:49:19.967Z
Link: CVE-2026-16447
No data.
No data.
No data.
OpenCVE Enrichment
No data.