CVE-2026-4227 describes a high-severity buffer overflow vulnerability impacting the LB-LINK BL-WR9000 router, specifically within the sub_44D844 function of its /goform/get_hidessid_cfg component. This flaw allows an unauthenticated attacker to remotely trigger a denial of service, reflected in its CVSSv3.1 score of 7.5 (High) with a vector indicating network-based, low-complexity exploitation. While the vulnerability details have been publicly disclosed, there is currently no evidence of active exploitation in the wild, and no readily available exploit modules exist in common frameworks like Metasploit or Nuclei. The vendor has not responded to disclosure attempts, and community discussion or media coverage remains minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.4.9CPE matchmatch criteria | cpe:2.3:o:lb-link:bl-wr9000_firmware:2.4.9:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.