CVE-2026-2084 | D-Link DIR-823X 250416 /goform/set_language langSelection os command injection (EUVD-2026-5729 / WID-SEC-2026-0340)
A vulnerability described as critical has been identified in D-Link DIR-823X 250416. This impacts an unknown function of the file /goform/set_language. Executing a manipulation of the argument langSelection can lead to os command injection.
This vulnerability is registered as CVE-2026-2084. It is possible to launch the attack remotely. Furthermore, an exploit is available.