CVE-2026-85384

Status: Received

Description

A stack-based buffer overflow vulnerability exists in the httpd component of RE210 AC750 due to improper bounds checking in the splitString function when processing an uploaded configuration file. An authenticated attacker on the local network can upload a crafted configuration file to trigger the overflow, leading to remote code execution. Successful exploitation may allow unauthorized access to sensitive information, modification of device configuration and network behavior, or disruption of device availability.

Published
September 8, 2026 7:20 PM
Last Modified
September 8, 2026 7:20 PM
Source
f23511db-6c3e-4e32-a477-6aa17d310630

Weaknesses (CWE)

CWE-121

References

Contact Us

Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.