Vulnerability index

Browse CVEs

1,155 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2022-28955EPSS 40% An access control issue in D-Link DIR816L_FW206b01 allows unauthenticated attackers to access folders folder_view.php and category_view.php. Dir 816l Firmware No fix yet Fix from $1,9502022-05-18 MEDIUM 6.5 CVE-2022-29332 D-LINK DIR-825 AC1200 R2 is vulnerable to Directory Traversal. An attacker could use the "../../../../" setting of the FTP server folder to set the r… Dir 825 Firmware No fix yet Fix from $1,6002022-05-17 CRITICAL 9.8 CVE-2022-28915EPSS 7% D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a command injection vulnerability via the admuser and admpass parameters in /goform/setSysAdm. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29321 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the lanip parameter in /goform/setNetworkLan. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29322EPSS 17% D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the IPADDR and nvmacaddr parameters in /goform/form2Dhcpip. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29323 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the MAC parameter in /goform/editassignment. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29324 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the proto parameter in /goform/form2IPQoSTcAdd. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29325 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addurlfilter parameter in /goform/websURLFilter. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29326 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addhostfilter parameter in /goform/websHostFilter. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29327 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the urladd parameter in /goform/websURLFilterAddDel. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29328EPSS 14% D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a stack overflow via the function checkvalidupgrade. Dap 1330 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29329EPSS 14% D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a heap overflow via the devicename parameter in /goform/setDeviceSettings. Dap 1330 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-28895 A command injection vulnerability in the component /setnetworksettings/IPAddress of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate priv… Dir 882 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-28896 A command injection vulnerability in the component /setnetworksettings/SubnetMask of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate pri… Dir 882 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-28901 A command injection vulnerability in the component /SetTriggerLEDBlink/Blink of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileg… Dir 882 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-28573EPSS 28% D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetNTPserverSeting. This vulnerability allows a… Dir 823 Pro Firmware No fix yet Fix from $2,3002022-05-02 CRITICAL 9.8 CVE-2022-28571EPSS 6% D-link 882 DIR882A1_FW130B06 was discovered to contain a command injection vulnerability in`/usr/bin/cli. Dir 882 Firmware No fix yet Fix from $2,3002022-05-02 CRITICAL 9.8 CVE-2021-46442EPSS 56% In the "webupg" binary of D-Link DIR-825 G1, attackers can bypass authentication through parameters "autoupgrade.asp", and perform functions such as … Dir 825 Firmware No fix yet Fix from $2,3002022-04-27 HIGH 8.8 CVE-2021-46441EPSS 33% In the "webupg" binary of D-Link DIR-825 G1, because of the lack of parameter verification, attackers can use "cmd" parameters to execute arbitrary s… Dir 825 Firmware No fix yet Fix from $1,9502022-04-27 HIGH 7.8 CVE-2022-1262 A command injection vulnerability in the protest binary allows an attacker with access to the remote command line interface to execute arbitrary comm… Dir 1360 Firmware No fix yet Fix from $1,9502022-04-11 HIGH 7.5 CVE-2022-27292 D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formLanguageChange. This vulnerability allows attackers to cause a… Dir 619 Firmware Mitigation only Fix from $1,9502022-04-10 HIGH 7.5 CVE-2022-27293 D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formWlanSetup. This vulnerability allows attackers to cause a Deni… Dir 619 Firmware No fix yet Fix from $1,9502022-04-10 HIGH 7.5 CVE-2022-27294 D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formWlanWizardSetup. This vulnerability allows attackers to cause … Dir 619 Firmware No fix yet Fix from $1,9502022-04-10 HIGH 7.5 CVE-2022-27295 D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formAdvanceSetup. This vulnerability allows attackers to cause a D… Dir 619 Firmware No fix yet Fix from $1,9502022-04-10 HIGH 7.5 CVE-2022-27286 D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanNonLogin. This vulnerability allows attackers to cause a… Dir 619 Ax Firmware No fix yet Fix from $1,9502022-04-10 HIGH 7.5 CVE-2022-27287 D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanPPPoE. This vulnerability allows attackers to cause a De… Dir 619 Ax Firmware No fix yet Fix from $1,9502022-04-10 HIGH 7.5 CVE-2022-27288 D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanPPTP. This vulnerability allows attackers to cause a Den… Dir 619 Firmware No fix yet Fix from $1,9502022-04-10 HIGH 7.5 CVE-2022-27289 D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanL2TP. This vulnerability allows attackers to cause a Den… Dir 619 Firmware No fix yet Fix from $1,9502022-04-10 HIGH 7.5 CVE-2022-27290 D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanDhcpplus. This vulnerability allows attackers to cause a… Dir 619 Firmware No fix yet Fix from $1,9502022-04-10 HIGH 7.5 CVE-2022-27291 D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formdumpeasysetup. This vulnerability allows attackers to cause a … Dir 619 Firmware No fix yet Fix from $1,9502022-04-10