Vulnerability index

Browse CVEs

1,155 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2020-8962 A stack-based buffer overflow was found on the D-Link DIR-842 REVC with firmware v3.13B09 HOTFIX due to the use of strcpy for LOGINPASSWORD when hand… Dir 842 Firmware No fix yet Fix from $2,3002020-02-13 MEDIUM 5.9 CVE-2013-3096 D-Link DIR865L v1.03 suffers from an "Unauthenticated Hardware Linking" vulnerability. Dir865l Firmware No fix yet Fix from $1,6002020-02-07 CRITICAL 9.8 CVE-2013-7055EPSS 7% D-Link DIR-100 4.03B07 has PPTP and poe information disclosure Dir 100 Firmware No fix yet Fix from $2,3002020-02-04 MEDIUM 6.1 CVE-2013-7054 D-Link DIR-100 4.03B07: cli.cgi XSS Dir 100 Firmware No fix yet Fix from $1,6002020-02-04 CRITICAL 9.8 CVE-2013-7052EPSS 25% D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script Dir 100 Firmware No fix yet Fix from $2,3002020-02-04 HIGH 8.8 CVE-2013-7051EPSS 16% D-Link DIR-100 4.03B07: cli.cgi security bypass due to failure to check authentication parameters Dir 100 Firmware No fix yet Fix from $1,9502020-02-04 HIGH 8.8 CVE-2013-7053 D-Link DIR-100 4.03B07: cli.cgi CSRF Dir 100 Firmware No fix yet Fix from $1,9502020-02-04 HIGH 7.5 CVE-2013-1602EPSS 15% An Information Disclosure vulnerability exists due to insufficient validation of authentication cookies for the RTSP session in D-Link DCS-5635 1.01,… Dcs 3411 Firmware No fix yet Fix from $1,9502020-01-28 MEDIUM 5.3 CVE-2013-1603EPSS 16% An Authentication vulnerability exists in D-LINK WCS-1100 1.02, TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DCS-7510 1.00, DCS-7410 1.00, D… Dcs 3411 Firmware No fix yet Fix from $1,6002020-01-28 MEDIUM 5.3 CVE-2013-1600EPSS 19% An Authentication Bypass vulnerability exists in upnp/asf-mp4.asf when streaming live video in D-Link TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_… Dcs 2102 Firmware No fix yet Fix from $1,6002020-01-28 MEDIUM 5.3 CVE-2013-1601EPSS 13% An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processing a live video stream in D-LI… Dcs 3411 Firmware No fix yet Fix from $1,6002020-01-28 CRITICAL 9.8 CVE-2013-1599EPSS 40% A Command Injection vulnerability exists in the /var/www/cgi-bin/rtpd.cgi script in D-Link IP Cameras DCS-3411/3430 firmware 1.02, DCS-5605/5635 1.01… Dcs 3411 Firmware No fix yet Fix from $2,3002020-01-28 HIGH 7.2 CVE-2012-6613 D-Link DSR-250N devices with firmware 1.05B73_WW allow Persistent Root Access because of the admin password for the admin account. Dsr 250n Firmware No fix yet Fix from $1,9502020-01-25 CRITICAL 9.8 CVE-2019-16327 D-Link DIR-601 B1 2.00NA devices are vulnerable to authentication bypass. They do not check for authentication at the server side and rely on client-… Dir 601 Firmware No fix yet Fix from $2,3002019-12-26 HIGH 8.8 CVE-2019-16326 D-Link DIR-601 B1 2.00NA devices have CSRF because no anti-CSRF token is implemented. A remote attacker could exploit this in conjunction with CVE-20… Dir 601 Firmware No fix yet Fix from $1,9502019-12-26 MEDIUM 6.5 CVE-2019-19743EPSS 9% On D-Link DIR-615 devices, a normal user is able to create a root(admin) user from the D-Link portal. Dir 615 T1 Firmware No fix yet Fix from $1,6002019-12-16 HIGH 8.8 CVE-2019-19597EPSS 21% D-Link DAP-1860 devices before v1.04b03 Beta allow arbitrary remote code execution as root without authentication via shell metacharacters within an … Dap 1860 Firmware No fix yet Fix from $1,9502019-12-05 HIGH 8.8 CVE-2019-19598 D-Link DAP-1860 devices before v1.04b03 Beta allow access to administrator functions without authentication via the HNAP_AUTH header timestamp value.… Dap 1860 Firmware No fix yet Fix from $1,9502019-12-05 CRITICAL 9.8 CVE-2019-18852 Certain D-Link devices have a hardcoded Alphanetworks user account with TELNET access because of /etc/config/image_sign or /etc/alpha_config/image_si… Dir 600 B1 Firmware No fix yet Fix from $2,3002019-11-11 CRITICAL 9.8 CVE-2013-4857 D-Link DIR-865L has PHP File Inclusion in the router xml file. Dir 865l Firmware No fix yet Fix from $2,3002019-10-25 HIGH 8.8 CVE-2013-4855 D-Link DIR-865L has SMB Symlink Traversal due to misconfiguration in the SMB service allowing symbolic links to be created to locations outside of th… Dir 865l Firmware Mitigation only Fix from $1,9502019-10-25 MEDIUM 6.5 CVE-2013-4856 D-Link DIR-865L has Information Disclosure. Dir 865l Firmware No fix yet Fix from $1,6002019-10-25 CRITICAL 9.1 CVE-2019-17512 There are some web interfaces without authentication requirements on D-Link DIR-412 A1-1.14WW routers. An attacker can clear the router's log file vi… Dir 412 Firmware No fix yet Fix from $2,3002019-10-16 CRITICAL 9.8 CVE-2017-14948 Certain D-Link products are affected by: Buffer Overflow. This affects DIR-880L 1.08B04 and DIR-895 L/R 1.13b03. The impact is: execute arbitrary cod… Dir 868l Firmware No fix yet Fix from $2,3002019-10-14 HIGH 7.5 CVE-2019-17511 There are some web interfaces without authentication requirements on D-Link DIR-412 A1-1.14WW routers. An attacker can get the router's log file via … Dir 412 Firmware No fix yet Fix from $1,9502019-10-14 CRITICAL 9.8 CVE-2019-17506EPSS 56% There are some web interfaces without authentication requirements on D-Link DIR-868L B1-2.03 and DIR-817LW A1-1.04 routers. An attacker can get the r… Dir 868l B1 Firmware No fix yet Fix from $2,3002019-10-11 CRITICAL 9.8 CVE-2019-17508EPSS 16% On D-Link DIR-859 A3-1.06 and DIR-850 A1.13 devices, /etc/services/DEVICE.TIME.php allows command injection via the $SERVER variable. Dir 859 A3 Firmware No fix yet Fix from $2,3002019-10-11 CRITICAL 9.8 CVE-2019-17509 D-Link DIR-846 devices with firmware 100A35 allow remote attackers to execute arbitrary OS commands as root by leveraging admin access and sending a … Dir 846 Firmware No fix yet Fix from $2,3002019-10-11 CRITICAL 9.8 CVE-2019-17510 D-Link DIR-846 devices with firmware 100A35 allow remote attackers to execute arbitrary OS commands as root by leveraging admin access and sending a … Dir 846 Firmware No fix yet Fix from $2,3002019-10-11 HIGH 7.5 CVE-2019-17507 An issue was discovered on D-Link DIR-816 A1 1.06 devices. An attacker could access management pages of the router via a client that ignores the 'top… Dir 816 A1 Firmware No fix yet Fix from $1,9502019-10-11