CVE-2026-15270

A weakness has been identified in D-link DIR-823G 1.0.2B05_20181207. Affected by this vulnerability is an unknown functionality of the file /etc/boa/boa.conf of the component Web Interface. Executing a manipulation can lead to least privilege violation. The attack can be launched remotely. The attack requires a high level of complexity. The exploitation appears to be difficult. The exploit has been made available to the public and could be used for attacks.
References
Link Resource
https://app.notion.com/p/DIR823G-V1-0-2B05_20181207-37a1f5ba989080f2a043c60d2cfc7499?source=copy_link Third Party Advisory
https://vuldb.com/cve/CVE-2026-15270 Third Party Advisory VDB Entry
https://vuldb.com/submit/852314 Third Party Advisory VDB Entry
https://vuldb.com/vuln/377213 Third Party Advisory VDB Entry
https://vuldb.com/vuln/377213/cti Permissions Required VDB Entry
https://www.dlink.com/ Product
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:dir-823g_firmware:1.0.2b05_20181207:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-823g:-:*:*:*:*:*:*:*

History

13 Jul 2026, 13:09

Type Values Removed Values Added
CPE cpe:2.3:h:dlink:dir-823g:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-823g_firmware:1.0.2b05_20181207:*:*:*:*:*:*:*
First Time Dlink
Dlink dir-823g Firmware
Dlink dir-823g
References () https://app.notion.com/p/DIR823G-V1-0-2B05_20181207-37a1f5ba989080f2a043c60d2cfc7499?source=copy_link - () https://app.notion.com/p/DIR823G-V1-0-2B05_20181207-37a1f5ba989080f2a043c60d2cfc7499?source=copy_link - Third Party Advisory
References () https://vuldb.com/cve/CVE-2026-15270 - () https://vuldb.com/cve/CVE-2026-15270 - Third Party Advisory, VDB Entry
References () https://vuldb.com/submit/852314 - () https://vuldb.com/submit/852314 - Third Party Advisory, VDB Entry
References () https://vuldb.com/vuln/377213 - () https://vuldb.com/vuln/377213 - Third Party Advisory, VDB Entry
References () https://vuldb.com/vuln/377213/cti - () https://vuldb.com/vuln/377213/cti - Permissions Required, VDB Entry
References () https://www.dlink.com/ - () https://www.dlink.com/ - Product

09 Jul 2026, 20:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-09 20:16

Updated : 2026-07-13 13:09


NVD link : CVE-2026-15270

Mitre link : CVE-2026-15270

CVE.ORG link : CVE-2026-15270


JSON object : View

Products Affected

dlink

  • dir-823g
  • dir-823g_firmware
CWE
CWE-266

Incorrect Privilege Assignment

CWE-272

Least Privilege Violation