CVE-2026-5611

A vulnerability was found in Belkin F9K1015 1.00.10. This affects the function formCrossBandSwitch of the file /goform/formCrossBandSwitch. Performing a manipulation of the argument webpage results in stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
References
Link Resource
https://github.com/Litengzheng/vuldb_new/blob/main/Belkin%20F9K1015/vul_5/README.md Exploit Third Party Advisory
https://vuldb.com/submit/785538 Third Party Advisory VDB Entry
https://vuldb.com/vuln/355402 Third Party Advisory VDB Entry
https://vuldb.com/vuln/355402/cti Permissions Required VDB Entry
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:belkin:f9k1015_firmware:1.00.10:*:*:*:*:*:*:*
cpe:2.3:h:belkin:f9k1015:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-06 03:16

Updated : 2026-07-24 20:10


NVD link : CVE-2026-5611

Mitre link : CVE-2026-5611

CVE.ORG link : CVE-2026-5611


JSON object : View

Products Affected

belkin

  • f9k1015
  • f9k1015_firmware
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-121

Stack-based Buffer Overflow