Description
A vulnerability was detected in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 20260717. Affected is an unknown function of the file /cgi-bin/isomount_mgr.cgi of the component ISO Image Handler. The manipulation of the argument upIsoRootPath results in os command injection. The attack can be executed remotely. The exploit is now public and may be used.
Published: 2026-08-31
Score: 9.4 Critical
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A vulnerability exists in the ISO Image Handler component of D-Link DNS-320L, DNS-327L, DNS-340L, and DNS-345 routers. An attacker can manipulate the upIsoRootPath argument in the /cgi-bin/isomount_mgr.cgi script, causing the system to execute arbitrary shell commands. This flaw is a classic operating‑system command injection, enabling remote code execution on the device's underlying firmware. The weakness aligns with CWE‑78; it also falls under the broader category of CWE‑77, as it involves unsafe use of command‑line arguments.

Affected Systems

The affected hardware originates from D-Link and includes models DNS‑320L, DNS‑327L, DNS‑340L, and DNS‑345. Firmware versions up to 2026‑07‑17 are vulnerable; any device running such firmware inherits the remote command injection risk. No other versions or firmware families are listed as impacted.

Risk and Exploitability

The CVSS base score of 9.4 signals a critical risk. Although an EPSS rating is currently unavailable, the public availability of the exploit and the remote nature of the attack suggest a non‑negligible chance of real‑world abuse. The vulnerability has not yet been catalogued in the CISA KEV list. An attacker can reach the affected endpoint from the internet or local network, send a crafted upIsoRootPath value, and execute arbitrary commands with the privileges of the web server process, potentially compromising the router and enabling further lateral movement.

Generated by OpenCVE AI on August 31, 2026 at 12:21 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest firmware update provided by D‑Link that removes the vulnerable isomount_mgr.cgi handler.
  • Disable the ISO Image feature entirely or restrict it to local management traffic.
  • Restrict remote management to trusted IP addresses using firewall or router ACLs.

Generated by OpenCVE AI on August 31, 2026 at 12:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 31 Aug 2026 11:15:00 +0000

Type Values Removed Values Added
Description A vulnerability was detected in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 20260717. Affected is an unknown function of the file /cgi-bin/isomount_mgr.cgi of the component ISO Image Handler. The manipulation of the argument upIsoRootPath results in os command injection. The attack can be executed remotely. The exploit is now public and may be used.
Title D-Link DNS-320L/DNS-327L/DNS-340L/DNS-345 ISO Image isomount_mgr.cgi os command injection
First Time appeared D-link
D-link dns-320l
D-link dns-327l
D-link dns-340l
D-link dns-345
Weaknesses CWE-77
CWE-78
CPEs cpe:2.3:h:d-link:dns-320l:*:*:*:*:*:*:*:*
cpe:2.3:h:d-link:dns-327l:*:*:*:*:*:*:*:*
cpe:2.3:h:d-link:dns-340l:*:*:*:*:*:*:*:*
cpe:2.3:h:d-link:dns-345:*:*:*:*:*:*:*:*
Vendors & Products D-link
D-link dns-320l
D-link dns-327l
D-link dns-340l
D-link dns-345
References
Metrics cvssV2_0

{'score': 9, 'vector': 'AV:N/AC:L/Au:S/C:C/I:C/A:C/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 9.9, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 9.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 9.4, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P'}


Subscriptions

D-link Dns-320l Dns-327l Dns-340l Dns-345
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-08-31T11:15:09.892Z

Reserved: 2026-08-30T17:35:26.982Z

Link: CVE-2026-82689

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-31T12:17:57.763

Modified: 2026-08-31T12:17:57.763

Link: CVE-2026-82689

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-31T12:30:05Z

Weaknesses
  • CWE-77

    Improper Neutralization of Special Elements used in a Command ('Command Injection')

  • CWE-78

    Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')