CVE-2026-19893

A vulnerability was identified in D-Link DIR-842 2.01.B04. This impacts an unknown function of the file /etc/vsftpd.conf of the component vsftpd. Such manipulation leads to incorrect default permissions. It is possible to launch the attack remotely. A high complexity level is associated with this attack. The exploitability is said to be difficult.

Scoring

Severity
LOW
CVSS base score
3.1
CVSS vector
CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X
EPSS probability
0.29%
CWE
CWE-276, CWE-266
Published
2026-08-15
Last modified
2026-08-18

Affected products

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs