---
id: CVE-2026-5608
title: A vulnerability was detected in Belkin F9K1122 1.00.33
summary: >-
  A vulnerability was detected in Belkin F9K1122 1.00.33. Affected is the
  function formWlanSetup of the file /goform/formWlanSetup. The manipulation of
  the argument webpage results in stack-based buffer overflow. The attack may be
  performe…
severity: high
cvss: 8.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-119
  - CWE-121
vendor: belkin
product: f9k1122_firmware
affected:
  - f9k1122_firmware = 1.00.33
published: '2026-04-06'
updated: '2026-07-24'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-5608'
references:
  - url: 'https://github.com/Litengzheng/vul_db/blob/main/Belkin/vul_80/README.md'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/785315'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/355399'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/355399/cti'
    label: cna@vuldb.com
tags:
  - nvd
epss: 0.00725
epssPercentile: 0.52648
ingestedAt: '2026-07-24T09:23:51.687Z'
---

## Overview

A vulnerability was detected in Belkin F9K1122 1.00.33. Affected is the function formWlanSetup of the file /goform/formWlanSetup. The manipulation of the argument webpage results in stack-based buffer overflow. The attack may be performed from remote. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

## Affected

- `f9k1122_firmware = 1.00.33`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
