EIP-2026-101255

PRE-CVE

Dlink DSL2750U - 'Reboot' Command Injection

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-101255. PoCs published by Mohammed Hadi.

AI-analyzed exploit summary This exploit leverages a command injection vulnerability in Dlink DSL2750U routers by uploading a malicious configuration file via TFTP and triggering a reboot with injected commands. It demonstrates unauthenticated remote code execution (RCE) by exploiting weak authentication and command injection in the web interface.

Description

Dlink DSL2750U - 'Reboot' Command Injection

Exploits (1)

exploitdb WORKING POC
by Mohammed Hadi · textremotehardware
https://www.exploit-db.com/exploits/50034

This exploit leverages a command injection vulnerability in Dlink DSL2750U routers by uploading a malicious configuration file via TFTP and triggering a reboot with injected commands. It demonstrates unauthenticated remote code execution (RCE) by exploiting weak authentication and command injection in the web interface.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Dlink DSL2750U firmware ME_1.16
No auth needed
Prerequisites: Network access to the router · TFTP server access · Router's default or known credentials (bypassed via config upload)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026