CVE-2026-26673
Received
Received - Intake
Denial of Service in DJI Enhanced-WiFi Transmission Subsystem
Publication date: 2026-03-04
Last updated on: 2026-03-05
Assigner: MITRE
Description
Description
An issue in DJI Mavic Mini, Spark, Mavic Air, Mini, Mini SE 0.1.00.0500 and below allows a remote attacker to cause a denial of service via the DJI Enhanced-WiFi transmission subsystem
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| dji | mavic_mini_firmware | to 01.00.0600 (inc) |
| dji | spark_firmware | to 01.00.1000 (inc) |
| dji | mini_se_firmware | to 01.02.0000 (inc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-400 | The product does not properly control the allocation and maintenance of a limited resource. |