Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 20 Sep 2026 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in D-Link R95 BE9500_1.00.16. This vulnerability affects the function system of the file /bin/ssi of the component DHMAPI. The manipulation of the argument NTPServer results in os command injection. The attack can be executed remotely. The exploit has been made public and could be used. | |
| Title | D-Link R95 DHMAPI ssi system os command injection | |
| First Time appeared |
D-link
D-link r95 |
|
| Weaknesses | CWE-77 CWE-78 |
|
| CPEs | cpe:2.3:h:d-link:r95:*:*:*:*:*:*:*:* | |
| Vendors & Products |
D-link
D-link r95 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-09-20T01:15:12.415Z
Reserved: 2026-09-19T09:12:08.815Z
Link: CVE-2026-93958
No data.
Status : Received
Published: 2026-09-20T02:16:53.307
Modified: 2026-09-20T02:16:53.307
Link: CVE-2026-93958
No data.
OpenCVE Enrichment
Updated: 2026-09-20T02:30:17Z
