A vulnerability was found in D-Link DIR-816 1.10CNB05_R1B011D88210 and classified as critical. Affected by this issue is the function sub_445E7C of the file /goform/singlePortForward. Such manipulation of the argument ip_address leads to command injection.

This vulnerability is referenced as CVE-2026-8345. It is possible to launch the attack remotely. Furthermore, an exploit is available.