Vulnerability index

Browse CVEs

96 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dvg N5402sp Firmware CRITICAL 9.8
CVE-2015-7246EPSS 14%

D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03, or W2000EN-00 has a default password of root for the root account and tw for the tw account,…

No fix yet
Fix from $2,300 2017-04-24
Dvg N5402sp Firmware CRITICAL 9.8
CVE-2015-7247EPSS 10%

D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03, or W2000EN-00 discloses usernames, passwords, keys, values, and web account hashes (super an…

No fix yet
Fix from $2,300 2017-04-24
Dvg N5402sp Firmware HIGH 7.5
CVE-2015-7245EPSS 45%

Directory traversal vulnerability in D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03, or W2000EN-00 allows remote attackers to read sensitive…

No fix yet
Fix from $1,950 2017-04-24
Dap 1353 H\/w B1 Firmware HIGH 8.1
CVE-2016-1559

D-Link DAP-1353 H/W vers. B1 3.15 and earlier, D-Link DAP-2553 H/W ver. A1 1.31 and earlier, and D-Link DAP-3520 H/W ver. A1 1.16 and earlier reveal …

Patch available
Fix from $1,950 2017-04-21
Dir 615 Firmware HIGH 8.8
CVE-2017-7398

D-Link DIR-615 HW: T1 FW:20.09 is vulnerable to Cross-Site Request Forgery (CSRF) vulnerability. This enables an attacker to perform an unwanted acti…

No fix yet
Fix from $1,950 2017-04-04
Dir 600m Firmware HIGH 8.8
CVE-2017-5874

CSRF exists on D-Link DIR-600M Rev. Cx devices before v3.05ENB01_beta_20170306. This can be used to bypass authentication and insert XSS sequences or…

Fix: after 1.0.1
Fix from $1,950 2017-03-22
Di 524 Firmware HIGH 8.0
CVE-2017-5633

Multiple cross-site request forgery (CSRF) vulnerabilities on the D-Link DI-524 Wireless Router with firmware 9.01 allow remote attackers to (1) chan…

No fix yet
Fix from $1,950 2017-03-06
Dcs 2103 Hd Cube Network Camera Firmware MEDIUM 5.0
CVE-2014-9238

D-link IP camera DCS-2103 with firmware 1.0.0 allows remote attackers to obtain the installation path via the file parameter to cgi-bin/sddownload.cg…

No fix yet
Fix from $1,600 2014-12-03
Dcs 2103 Hd Cube Network Camera Firmware MEDIUM 5.0
CVE-2014-9234

Directory traversal vulnerability in cgi-bin/sddownload.cgi in D-link IP camera DCS-2103 with firmware 1.0.0 allows remote attackers to read arbitrar…

No fix yet
Fix from $1,600 2014-12-03
Dap 2253 Firmware MEDIUM 6.8
CVE-2013-7320

Cross-site request forgery (CSRF) vulnerability in D-Link DAP-2253 Access Point (Rev. A1) with firmware before 1.30 allows remote attackers to hijack…

Fix: after 1.26rc55
Fix from $1,600 2014-02-06
Di 604 MEDIUM 6.8
CVE-2010-2293

The Ping tools web interface in Dlink Di-604 router allows remote authenticated users to cause a denial of service via a large "ip textfield" size.

Mitigation only
Fix from $1,600 2010-06-15
Dir 400 HIGH 10.0
CVE-2009-3347

Buffer overflow on the D-Link DIR-400 wireless router allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by a…

No fix yet
Fix from $1,950 2009-09-24
Dph 540 HIGH 7.8
CVE-2007-3347

The D-Link DPH-540/DPH-541 phone accepts SIP INVITE messages that are not from the Call Server's IP address, which allows remote attackers to engage …

Mitigation only
Fix from $1,950 2007-06-22
Dph 540 HIGH 7.8
CVE-2007-3348

The D-Link DPH-540/DPH-541 phone allows remote attackers to cause a denial of service (device outage) via a malformed SDP header in a SIP INVITE mess…

Patch available
Fix from $1,950 2007-06-22
Tftp Server HIGH 10.0
CVE-2007-1435EPSS 43%

Buffer overflow in D-Link TFTP Server 1.0 allows remote attackers to cause a denial of service (crash) via a long (1) GET or (2) PUT request, which t…

Mitigation only
Fix from $1,950 2007-03-13
Dwl 2000ap\+ HIGH 7.8
CVE-2006-6538

D-LINK DWL-2000AP+ firmware 2.11 allows remote attackers to cause (1) a denial of service (device reset) via a flood of ARP replies on the wired or w…

No fix yet
Fix from $1,950 2006-12-14
Dwl G132 HIGH 10.0
CVE-2006-6055EPSS 6%

Stack-based buffer overflow in A5AGU.SYS 1.0.1.41 for the D-Link DWL-G132 wireless adapter allows remote attackers to execute arbitrary code via a 80…

Mitigation only
Fix from $1,950 2006-11-22
Dsl G624t MEDIUM 5.0
CVE-2006-5536EPSS 14%

Directory traversal vulnerability in cgi-bin/webcm in D-Link DSL-G624T firmware 3.00B01T01.YA-C.20060616 allows remote attackers to read arbitrary fi…

No fix yet
Fix from $1,600 2006-10-26
Dsl G624t MEDIUM 5.0
CVE-2006-5538

D-Link DSL-G624T firmware 3.00B01T01.YA-C.20060616 allows remote attackers to list contents of the cgi-bin directory via unspecified vectors, probabl…

No fix yet
Fix from $1,600 2006-10-26
Di 604 Broadband Router HIGH 7.5
CVE-2006-3687EPSS 19%

Stack-based buffer overflow in the Universal Plug and Play (UPnP) service in D-Link DI-524, DI-604 Broadband Router, DI-624, D-Link DI-784, WBR-1310 …

Mitigation only
Fix from $1,950 2006-07-21
Dwl 2100ap MEDIUM 5.0
CVE-2006-2901EPSS 9%

The web server for D-Link Wireless Access-Point (DWL-2100ap) firmware 2.10na and earlier allows remote attackers to obtain sensitive system informati…

Fix: after 2.10na
Fix from $1,600 2006-06-07
Dsl G604t MEDIUM 5.0
CVE-2006-2337

Directory traversal vulnerability in webcm in the D-Link DSL-G604T Wireless ADSL Router Modem allows remote attackers to read arbitrary files via an …

No fix yet
Fix from $1,600 2006-05-12
Dwl G700ap MEDIUM 5.0
CVE-2006-0784

D-Link DWL-G700AP with firmware 2.00 and 2.01 allows remote attackers to cause a denial of service (CAMEO HTTP service crash) via a request composed …

No fix yet
Fix from $1,600 2006-02-19
Di 524 MEDIUM 5.0
CVE-2005-4723

D-Link DI-524 Wireless Router, DI-624 Wireless Router, and DI-784 allow remote attackers to cause a denial of service (device reboot) via a series of…

No fix yet
Fix from $1,600 2005-12-31
Dsl 502t HIGH 7.5
CVE-2005-1680

D-Link DSL-502T, DSL-504T, DSL-562T, and DSL-G604T, when /cgi-bin/firmwarecfg is executed, allows remote attackers to bypass authentication (1) if th…

Mitigation only
Fix from $1,950 2005-05-20
Di 614\+ MEDIUM 5.1
CVE-2004-0615

Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router running firmware 2.60B2, and DI-…

Fix: after 1.28
Fix from $1,600 2004-12-06
Dcs 900 Internet Camera HIGH 7.5
CVE-2004-1650

D-Link DCS-900 Internet Camera listens on UDP port 62976 for an IP address, which allows remote attackers to change the IP address of the camera via …

Patch available
Fix from $1,950 2004-08-31
Di 604 MEDIUM 5.0
CVE-2004-0661

Integer signedness error in D-Link AirPlus DI-614+ running firmware 2.30 and earlier allows remote attackers to cause a denial of service (IP lease d…

Mitigation only
Fix from $1,600 2004-08-06
Dwl 900ap\+ HIGH 10.0
CVE-2003-1346

D-Link wireless access point DWL-900AP+ 2.2, 2.3 and possibly 2.5 allows remote attackers to set factory default settings by upgrading the firmware u…

Mitigation only
Fix from $1,950 2003-12-31
Di 614\+ MEDIUM 5.0
CVE-2003-1264

TFTP server in Longshine Wireless Access Point (WAP) LCS-883R-AC-B, and in D-Link DI-614+ 2.0 which is based on it, allows remote attackers to obtain…

No fix yet
Fix from $1,600 2003-12-31