CVE-2026-90703 | D-Link DWR-M921 1.1.52 formDiskCreateShare system folderpath os command injection
A vulnerability, which was classified as very critical, was found in D-Link DWR-M921 1.1.52. The affected element is the function system of the file /boafrm/formDiskCreateShare. Such manipulation of the argument folderpath leads to os command injection.
This vulnerability is traded as CVE-2026-90703. The attack may be launched remotely. Furthermore, there is an exploit available.VulDB Recent EntriesRead More