Vulnerability index

Browse CVEs

72 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2022-44929 An access control issue in D-Link DVG-G5402SP GE_1.03 allows unauthenticated attackers to escalate privileges via arbitrarily editing VoIP SIB profil… Dvg G5402sp Firmware No fix yet Fix from $2,3002022-12-02 CRITICAL 9.8 CVE-2022-44928 D-Link DVG-G5402SP GE_1.03 was discovered to contain a command injection vulnerability via the Maintenance function. Dvg G5402sp Firmware No fix yet Fix from $2,3002022-12-02 MEDIUM 5.3 CVE-2021-33259 Several web interfaces in D-Link DIR-868LW 1.12b have no authentication requirements for access, allowing for attackers to obtain users' DNS query hi… Dir 868lw Firmware No fix yet Fix from $1,6002021-10-31 CRITICAL 9.8 CVE-2021-26709EPSS 40% D-Link DSL-320B-D1 devices through EU_1.25 are prone to multiple Stack-Based Buffer Overflows that allow unauthenticated remote attackers to take ove… Dsl 320b D1 No fix yet Fix from $2,3002021-04-07 HIGH 7.5 CVE-2020-9544 An issue was discovered on D-Link DSL-2640B E1 EU_1.01 devices. The administrative interface doesn't perform authentication checks for a firmware-upd… Dsl 2640b Firmware No fix yet Fix from $1,9502020-03-05 HIGH 8.8 CVE-2013-6811 Multiple cross-site request forgery (CSRF) vulnerabilities in the D-Link DSL-6740U gateway (Rev. H1) allow remote attackers to hijack the authenticat… Dsl6740u Firmware Mitigation only Fix from $1,9502019-11-22 MEDIUM 6.1 CVE-2019-17663 D-Link DIR-866L 1.03B04 devices allow XSS via HtmlResponseMessage in the device common gateway interface, leading to common injection. Dir 866l Firmware Mitigation only Fix from $1,6002019-10-16 CRITICAL 9.8 CVE-2018-19986EPSS 42% In the /HNAP1/SetRouterSettings message, the RemotePort parameter is vulnerable, and the vulnerability affects D-Link DIR-818LW Rev.A 2.05.B03 and DI… Dir 818lw Firmware No fix yet Fix from $2,3002019-05-13 CRITICAL 9.8 CVE-2018-19987EPSS 13% D-Link DIR-822 Rev.B 202KRb06, DIR-822 Rev.C 3.10B06, DIR-860L Rev.B 2.03.B03, DIR-868L Rev.B 2.05B02, DIR-880L Rev.A 1.20B01_01_i3se_BETA, and DIR-8… Dir 818lw Firmware No fix yet Fix from $2,3002019-05-13 CRITICAL 9.8 CVE-2018-19988EPSS 7% In the /HNAP1/SetClientInfoDemo message, the AudioMute and AudioEnable parameters are vulnerable, and the vulnerabilities affect D-Link DIR-868L Rev.… Dir 868l Firmware No fix yet Fix from $2,3002019-05-13 CRITICAL 9.8 CVE-2018-19989EPSS 6% In the /HNAP1/SetQoSSettings message, the uplink parameter is vulnerable, and the vulnerability affects D-Link DIR-822 Rev.B 202KRb06 and DIR-822 Rev… Dir 822 Firmware No fix yet Fix from $2,3002019-05-13 CRITICAL 9.8 CVE-2018-19990EPSS 5% In the /HNAP1/SetWiFiVerifyAlpha message, the WPSPIN parameter is vulnerable, and the vulnerability affects D-Link DIR-822 B1 202KRb06 devices. In th… Dir 822 Firmware No fix yet Fix from $2,3002019-05-13 CRITICAL 9.8 CVE-2019-9124 An issue was discovered on D-Link DIR-878 1.12B01 devices. At the /HNAP1 URI, an attacker can log in with a blank password. Dir 878 Firmware No fix yet Fix from $2,3002019-02-25 CRITICAL 9.8 CVE-2019-9125 An issue was discovered on D-Link DIR-878 1.12B01 devices. Because strncpy is misused, there is a stack-based buffer overflow vulnerability that does… Dir 878 Firmware No fix yet Fix from $2,3002019-02-25 CRITICAL 9.8 CVE-2018-20389 D-Link DCM-604 DCM604_C1_ViaCabo_1.04_20130606 and DCM-704 EU_DCM-704_1.10 devices allow remote attackers to discover credentials via iso.3.6.1.4.1.4… Dcm 604 Firmware No fix yet Fix from $2,3002018-12-23 HIGH 7.5 CVE-2018-18441 D-Link DCS series Wi-Fi cameras expose sensitive information regarding the device configuration. The affected devices include many of DCS series, suc… Dcs 936l Firmware No fix yet Fix from $1,9502018-12-20 HIGH 7.5 CVE-2018-18442 D-Link DCS-825L devices with firmware 1.08 do not employ a suitable mechanism to prevent denial-of-service (DoS) attacks. An attacker can harm the de… Dcs 825l Firmware No fix yet Fix from $1,9502018-12-20 CRITICAL 9.8 CVE-2018-20305 D-Link DIR-816 A2 1.10 B05 devices allow arbitrary remote code execution without authentication via the newpass parameter. In the /goform/form2userco… Dir 816 A2 Firmware No fix yet Fix from $2,3002018-12-20 CRITICAL 9.8 CVE-2018-20056EPSS 7% An issue was discovered in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 and DIR-605L Rev.B 2.12B1 devices. There is a stack-based buffer overflow allowin… Dir 619l Firmware No fix yet Fix from $2,3002018-12-11 HIGH 8.8 CVE-2018-20057EPSS 7% An issue was discovered in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 and DIR-605L Rev.B 2.12B1 devices. goform/formSysCmd allows remote authenticated … Dir 619l Firmware No fix yet Fix from $1,9502018-12-11 MEDIUM 6.1 CVE-2018-18636 XSS exists in cgi-bin/webcm on D-link DSL-2640T routers via the var:RelaodHref or var:conid parameter. Dsl 2640t Firmware No fix yet Fix from $1,6002018-10-24 CRITICAL 9.8 CVE-2018-17881 On D-Link DIR-823G 2018-09-19 devices, the GoAhead configuration allows /HNAP1 SetPasswdSettings commands without authentication to trigger an admin … Dir 823g Firmware No fix yet Fix from $2,3002018-10-03 HIGH 7.5 CVE-2018-17880 On D-Link DIR-823G 2018-09-19 devices, the GoAhead configuration allows /HNAP1 RunReboot commands without authentication to trigger a reboot. Dir 823g Firmware No fix yet Fix from $1,9502018-10-03 CRITICAL 9.8 CVE-2018-17786 On D-Link DIR-823G devices, ExportSettings.sh, upload_settings.cgi, GetDownLoadSyslog.sh, and upload_firmware.cgi do not require authentication, whic… Dir 823g Firmware No fix yet Fix from $2,3002018-10-02 CRITICAL 9.8 CVE-2018-17787 On D-Link DIR-823G devices, the GoAhead configuration allows /HNAP1 Command Injection via shell metacharacters in the POST data, because this data is… Dir 823g Firmware No fix yet Fix from $2,3002018-10-02 HIGH 7.2 CVE-2018-16408 D-Link DIR-846 devices with firmware 100.26 allow remote attackers to execute arbitrary code as root via a SetNetworkTomographySettings request by le… Dir 846 Firmware No fix yet Fix from $1,9502018-09-03 CRITICAL 9.8 CVE-2018-6213 In the web server on D-Link DIR-620 devices with a certain customized (by ISP) variant of firmware 1.0.3, 1.0.37, 1.3.1, 1.3.3, 1.3.7, 1.4.0, and 2.0… Dir 620 Firmware No fix yet Fix from $2,3002018-06-20 HIGH 7.2 CVE-2018-6211EPSS 6% On D-Link DIR-620 devices with a certain customized (by ISP) variant of firmware 1.0.3, 1.0.37, 1.3.1, 1.3.3, 1.3.7, 1.4.0, and 2.0.22, OS command in… Dir 620 Firmware No fix yet Fix from $1,9502018-06-20 MEDIUM 6.1 CVE-2018-6212 On D-Link DIR-620 devices with a certain customized (by ISP) variant of firmware 1.0.3, 1.0.37, 1.3.1, 1.3.3, 1.3.7, 1.4.0, and 2.0.22, a reflected C… Dir 620 Firmware No fix yet Fix from $1,6002018-06-20 CRITICAL 9.8 CVE-2018-11013EPSS 7% Stack-based buffer overflow in the websRedirect function in GoAhead on D-Link DIR-816 A2 (CN) routers with firmware version 1.10B05 allows unauthenti… Dir 816 A2 Firmware No fix yet Fix from $2,3002018-05-13