Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 6.5
CVE-2020-24578
An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. It has a misconfigured FTP service that allows a mali…
Dsl2888a Firmware
No fix yet
MEDIUM 6.1
CVE-2020-25786
webinc/js/info.php on D-Link DIR-816L 2.06.B09_BETA and DIR-803 1.04.B02 devices allows XSS via the HTTP Referer header. NOTE: This vulnerability onl…
Dir 803 Firmware
No fix yet
MEDIUM 6.7
CVE-2020-12774
D-Link DSL-7740C does not properly validate user input, which allows an authenticated LAN user to inject arbitrary command.
Dsl 7740c Firmware
Mitigation only
HIGH 7.8
CVE-2020-13150
D-link DSL-2750U ISL2750UEME3.V1E devices allow approximately 90 seconds of access to the control panel, after a restart, before MAC address filterin…
Dsl 2750u Firmware
Mitigation only
HIGH 7.5
CVE-2020-13960
D-Link DSL 2730-U IN_1.10 and IN_1.11 and DIR-600M 3.04 devices have the domain.name string in the DNS resolver search path by default, which allows …
Dsl 2730u Firmware
No fix yet
HIGH 8.8
CVE-2020-13786
D-Link DIR-865L Ax 1.20B01 Beta devices allow CSRF.
Dir 865l Firmware
No fix yet
HIGH 7.5
CVE-2020-13783
D-Link DIR-865L Ax 1.20B01 Beta devices have Cleartext Storage of Sensitive Information.
Dir 865l Firmware
No fix yet
HIGH 7.5
CVE-2020-13784
D-Link DIR-865L Ax 1.20B01 Beta devices have a predictable seed in a Pseudo-Random Number Generator.
Dir 865l Firmware
No fix yet
HIGH 7.5
CVE-2020-13785
D-Link DIR-865L Ax 1.20B01 Beta devices have Inadequate Encryption Strength.
Dir 865l Firmware
No fix yet
HIGH 7.5
CVE-2020-13787
D-Link DIR-865L Ax 1.20B01 Beta devices have Cleartext Transmission of Sensitive Information.
Dir 865l Firmware
No fix yet
HIGH 8.8
CVE-2020-13782EPSS 27%
D-Link DIR-865L Ax 1.20B01 Beta devices allow Command Injection.
Dir 865l Firmware
No fix yet
HIGH 7.5
CVE-2020-13136
D-Link DSP-W215 1.26b03 devices send an obfuscated hash that can be retrieved and understood by a network sniffer.
Dsp W215 Firmware
Mitigation only
MEDIUM 6.5
CVE-2020-13135
D-Link DSP-W215 1.26b03 devices allow information disclosure by intercepting messages on the local network, as demonstrated by a Squid Proxy.
Dsp W215 Firmware
Mitigation only
HIGH 8.8
CVE-2019-17525EPSS 6%
The login page on D-Link DIR-615 T1 20.10 devices allows remote attackers to bypass the CAPTCHA protection mechanism and conduct brute-force attacks.
Dir 615 Firmware
No fix yet
CRITICAL 9.8
CVE-2020-9275
An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. A cfm UDP service listening on port 65002 allows remote, unauthenticated exfiltratio…
Dsl 2640b Firmware
No fix yet
CRITICAL 9.8
CVE-2020-9277
An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. Authentication can be bypassed when accessing cgi modules. This allows one to perfor…
Dsl 2640b Firmware
No fix yet
CRITICAL 9.8
CVE-2020-9279
An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. A hard-coded account allows management-interface login with high privileges. The log…
Dsl 2640b Firmware
No fix yet
CRITICAL 9.1
CVE-2020-9278
An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. The device can be reset to its default configuration by accessing an unauthenticated…
Dsl 2640b Firmware
No fix yet
HIGH 8.8
CVE-2020-9276
An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. The function do_cgi(), which processes cgi requests supplied to the device's web ser…
Dsl 2640b Firmware
No fix yet
HIGH 8.8
CVE-2020-10213
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the wps_sta_enrollee_pin …
Dir 825 Firmware
No fix yet
HIGH 8.8
CVE-2020-10214EPSS 18%
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. There is a stack-based buffer overflow in the httpd binary. It allows an authenticated …
Dir 825 Firmware
No fix yet
HIGH 8.8
CVE-2020-10215EPSS 5%
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the dns_query_name parame…
Dir 825 Firmware
No fix yet
HIGH 8.8
CVE-2020-10216EPSS 5%
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the date parameter in a s…
Dir 825 Firmware
No fix yet
HIGH 7.5
CVE-2019-19224
A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to download the confi…
Dsl 2680 Firmware
No fix yet
HIGH 7.5
CVE-2019-19225
A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to change DNS servers…
Dsl 2680 Firmware
No fix yet
HIGH 7.5
CVE-2019-19226
A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to enable or disable …
Dsl 2680 Firmware
No fix yet
HIGH 7.5
CVE-2019-19223
A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to reboot the router …
Dsl 2680 Firmware
No fix yet
MEDIUM 5.4
CVE-2019-19222
A Stored XSS issue in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an authenticated attacker to inject arbitrary JavaSc…
Dsl 2680 Firmware
No fix yet
HIGH 8.8
CVE-2020-9534
fmwlan.c on D-Link DIR-615Jx10 devices has a stack-based buffer overflow via the formWlanSetup webpage parameter when f_radius_ip1 is malformed.
Dir 615jx10 Firmware
No fix yet
HIGH 8.8
CVE-2020-9535
fmwlan.c on D-Link DIR-615Jx10 devices has a stack-based buffer overflow via the formWlanSetup_Wizard webpage parameter when f_radius_ip1 is malforme…
Dir 615jx10 Firmware
No fix yet