Vulnerability index

Browse CVEs

1,155 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Dir 816l Firmware HIGH 7.5
CVE-2022-28955EPSS 40%

An access control issue in D-Link DIR816L_FW206b01 allows unauthenticated attackers to access folders folder_view.php and category_view.php.

No fix yet
Fix from $1,950 2022-05-18
Dir 825 Firmware MEDIUM 6.5
CVE-2022-29332

D-LINK DIR-825 AC1200 R2 is vulnerable to Directory Traversal. An attacker could use the "../../../../" setting of the FTP server folder to set the r…

No fix yet
Fix from $1,600 2022-05-17
Dir 816 Firmware CRITICAL 9.8
CVE-2022-28915EPSS 7%

D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a command injection vulnerability via the admuser and admpass parameters in /goform/setSysAdm.

No fix yet
Fix from $2,300 2022-05-10
Dir 816 Firmware CRITICAL 9.8
CVE-2022-29321

D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the lanip parameter in /goform/setNetworkLan.

No fix yet
Fix from $2,300 2022-05-10
Dir 816 Firmware CRITICAL 9.8
CVE-2022-29322EPSS 17%

D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the IPADDR and nvmacaddr parameters in /goform/form2Dhcpip.

No fix yet
Fix from $2,300 2022-05-10
Dir 816 Firmware CRITICAL 9.8
CVE-2022-29323

D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the MAC parameter in /goform/editassignment.

No fix yet
Fix from $2,300 2022-05-10
Dir 816 Firmware CRITICAL 9.8
CVE-2022-29324

D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the proto parameter in /goform/form2IPQoSTcAdd.

No fix yet
Fix from $2,300 2022-05-10
Dir 816 Firmware CRITICAL 9.8
CVE-2022-29325

D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addurlfilter parameter in /goform/websURLFilter.

No fix yet
Fix from $2,300 2022-05-10
Dir 816 Firmware CRITICAL 9.8
CVE-2022-29326

D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addhostfilter parameter in /goform/websHostFilter.

No fix yet
Fix from $2,300 2022-05-10
Dir 816 Firmware CRITICAL 9.8
CVE-2022-29327

D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the urladd parameter in /goform/websURLFilterAddDel.

No fix yet
Fix from $2,300 2022-05-10
Dap 1330 Firmware CRITICAL 9.8
CVE-2022-29328EPSS 14%

D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a stack overflow via the function checkvalidupgrade.

No fix yet
Fix from $2,300 2022-05-10
Dap 1330 Firmware CRITICAL 9.8
CVE-2022-29329EPSS 14%

D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a heap overflow via the devicename parameter in /goform/setDeviceSettings.

No fix yet
Fix from $2,300 2022-05-10
Dir 882 Firmware CRITICAL 9.8
CVE-2022-28895

A command injection vulnerability in the component /setnetworksettings/IPAddress of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate priv…

No fix yet
Fix from $2,300 2022-05-10
Dir 882 Firmware CRITICAL 9.8
CVE-2022-28896

A command injection vulnerability in the component /setnetworksettings/SubnetMask of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate pri…

No fix yet
Fix from $2,300 2022-05-10
Dir 882 Firmware CRITICAL 9.8
CVE-2022-28901

A command injection vulnerability in the component /SetTriggerLEDBlink/Blink of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileg…

No fix yet
Fix from $2,300 2022-05-10
Dir 823 Pro Firmware CRITICAL 9.8
CVE-2022-28573EPSS 28%

D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetNTPserverSeting. This vulnerability allows a…

No fix yet
Fix from $2,300 2022-05-02
Dir 882 Firmware CRITICAL 9.8
CVE-2022-28571EPSS 6%

D-link 882 DIR882A1_FW130B06 was discovered to contain a command injection vulnerability in`/usr/bin/cli.

No fix yet
Fix from $2,300 2022-05-02
Dir 825 Firmware CRITICAL 9.8
CVE-2021-46442EPSS 56%

In the "webupg" binary of D-Link DIR-825 G1, attackers can bypass authentication through parameters "autoupgrade.asp", and perform functions such as …

No fix yet
Fix from $2,300 2022-04-27
Dir 825 Firmware HIGH 8.8
CVE-2021-46441EPSS 33%

In the "webupg" binary of D-Link DIR-825 G1, because of the lack of parameter verification, attackers can use "cmd" parameters to execute arbitrary s…

No fix yet
Fix from $1,950 2022-04-27
Dir 1360 Firmware HIGH 7.8
CVE-2022-1262

A command injection vulnerability in the protest binary allows an attacker with access to the remote command line interface to execute arbitrary comm…

No fix yet
Fix from $1,950 2022-04-11
Dir 619 Firmware HIGH 7.5
CVE-2022-27292

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formLanguageChange. This vulnerability allows attackers to cause a…

Mitigation only
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27293

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formWlanSetup. This vulnerability allows attackers to cause a Deni…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27294

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formWlanWizardSetup. This vulnerability allows attackers to cause …

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27295

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formAdvanceSetup. This vulnerability allows attackers to cause a D…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Ax Firmware HIGH 7.5
CVE-2022-27286

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanNonLogin. This vulnerability allows attackers to cause a…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Ax Firmware HIGH 7.5
CVE-2022-27287

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanPPPoE. This vulnerability allows attackers to cause a De…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27288

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanPPTP. This vulnerability allows attackers to cause a Den…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27289

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanL2TP. This vulnerability allows attackers to cause a Den…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27290

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanDhcpplus. This vulnerability allows attackers to cause a…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27291

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formdumpeasysetup. This vulnerability allows attackers to cause a …

No fix yet
Fix from $1,950 2022-04-10