← Retour
CVE-2026-5612
high
CVSS 8.8
A vulnerability was determined in Belkin F9K1015 1.00.10. This vulnerability affects the function formWlEncrypt of the file /goform/formWlEncrypt. Executing a manipulation of the argument webpage can...
Résumé
A vulnerability was determined in Belkin F9K1015 1.00.10. This vulnerability affects the function formWlEncrypt of the file /goform/formWlEncrypt. Executing a manipulation of the argument webpage can lead to stack-based buffer overflow. The attack can be launched remotely. The exploit has been publi...
Résumé IA openai / gpt-4o
Une vulnérabilité référencée **CVE-2026-5612** a été découverte dans belkin.
L'exploitation peut entraîner la prise de contrôle totale du système. Score CVSS : 8.8/10.
Action : appliquez le correctif officiel de l'éditeur.
En cas de doute, contactez votre service informatique ou cherchez « belkin CVE-2026-5612 » sur le site de l'éditeur.
CVE-2026-5612 (belkin) — CWE-119 / CVSS v3 8.8
Vecteur d'attaque : distant (réseau) / sans interaction utilisateur
Plan : 1) Audit SBOM, 2) Mise à jour staging→prod, 3) Surveillance WAF/proxy sur les endpoints affectés, 4) Recherche d'IOC dans les logs.
Réfs : voir GHSA / avis éditeur / version corrigée liés sur cette page.
❓ Quel est le problème
Belkin F9K1015 1.00.10におけるスタックベースのバッファオーバーフローの脆弱性です。
📍 Périmètre concerné
/goform/formWlEncryptのformWlEncrypt関数に影響。
🔥 Gravité
リモートで攻撃可能で、エクスプロイトが公開されており、高リスクです。
🔧 Comment corriger
ベンダーからの正式なパッチを待つか、該当する関数のコードを見直し、入力バリデーションを強化する必要があります。
🛡️ Contournement
現在、効果的な回避策は公表されていません。
🔍 Détection
ネットワークログを監視し、異常なリクエストがあるかをチェックすることで脆弱性の利用の検出を試みることができます。
Références
- advisory [email protected]
- advisory [email protected]
- exploit [email protected]
- web [email protected]