Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2019-8315EPSS 6%
An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit…
Dir 878 Firmware
No fix yet
HIGH 8.8
CVE-2019-8316EPSS 7%
An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit…
Dir 878 Firmware
No fix yet
HIGH 8.8
CVE-2019-8317EPSS 6%
An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit…
Dir 878 Firmware
No fix yet
HIGH 8.8
CVE-2019-8318EPSS 6%
An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit…
Dir 878 Firmware
No fix yet
HIGH 8.8
CVE-2019-8319EPSS 8%
An issue was discovered on D-Link DIR-878 devices with firmware 1.12A1. This issue is a Command Injection allowing a remote attacker to execute arbit…
Dir 878 Firmware
No fix yet
CRITICAL 9.8
CVE-2019-7736
D-Link DIR-600M C1 3.04 devices allow authentication bypass via a direct request to the wan.htm page. NOTE: this may overlap CVE-2019-13101.
Dir 600m Firmware
No fix yet
HIGH 8.6
CVE-2019-7390
An issue was discovered in /bin/goahead on D-Link DIR-823G devices with firmware 1.02B03. There is incorrect access control allowing remote attackers…
Dir 823g Firmware
No fix yet
HIGH 7.5
CVE-2019-7388
An issue was discovered in /bin/goahead on D-Link DIR-823G devices with firmware 1.02B03. There is incorrect access control allowing remote attackers…
Dir 823g Firmware
No fix yet
HIGH 7.5
CVE-2019-7389
An issue was discovered in /bin/goahead on D-Link DIR-823G devices with the firmware 1.02B03. There is incorrect access control allowing remote attac…
Dir 823g Firmware
No fix yet
HIGH 8.6
CVE-2018-15517EPSS 44%
The MailConnect feature on D-Link Central WiFiManager CWM-100 1.03 r0098 devices is intended to check a connection to an SMTP server but actually all…
Central Wifimanager
No fix yet
HIGH 7.8
CVE-2018-15515
The CaptivelPortal service on D-Link Central WiFiManager CWM-100 1.03 r0098 devices will load a Trojan horse "quserex.dll" from the CaptivelPortal.ex…
Central Wifimanager
No fix yet
MEDIUM 5.8
CVE-2018-15516
The FTP service on D-Link Central WiFiManager CWM-100 1.03 r0098 devices allows remote attackers to conduct a PORT command bounce scan via port 8000,…
Central Wifimanager
No fix yet
CRITICAL 9.8
CVE-2018-20114EPSS 7%
On D-Link DIR-818LW Rev.A 2.05.B03 and DIR-860L Rev.B 2.03.B03 devices, unauthenticated remote OS command execution can occur in the soap.cgi service…
Dir 818lw Firmware
No fix yet
CRITICAL 9.8
CVE-2018-20445
D-Link DCM-604 DCM604_C1_ViaCabo_1.04_20130606 and DCM-704 EU_DCM-704_1.10 devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1…
Dcm 604 Firmware
No fix yet
CRITICAL 9.8
CVE-2018-18007
atbox.htm on D-Link DSL-2770L devices allows remote unauthenticated attackers to discover admin credentials.
Dsl 2770l Firmware
Mitigation only
CRITICAL 9.8
CVE-2018-18008
spaces.htm on multiple D-Link devices (DSL, DIR, DWR) allows remote unauthenticated attackers to discover admin credentials.
Dsl 2770l Firmware
Mitigation only
CRITICAL 9.8
CVE-2018-18009
dirary0.js on D-Link DIR-140L, DIR-640L devices allows remote unauthenticated attackers to discover admin credentials.
Dir 140l Firmware
Mitigation only
HIGH 7.0
CVE-2018-18767
An issue was discovered in D-Link 'myDlink Baby App' version 2.04.06. Whenever actions are performed from the app (e.g., change camera settings or pl…
Mydlink Baby Camera Monitor
No fix yet
CRITICAL 9.8
CVE-2018-17777
An issue was discovered on D-Link DVA-5592 A1_WI_20180823 devices. If the PIN of the page "/ui/cbpc/login" is the default Parental Control PIN (0000)…
Dva 5592 Firmware
Mitigation only
CRITICAL 9.8
CVE-2018-17063
An issue was discovered on D-Link DIR-816 A2 1.10 B05 devices. An HTTP request parameter is used in command string construction within the handler fu…
Dir 816 A2 Firmware
No fix yet
CRITICAL 9.8
CVE-2018-17064EPSS 7%
An issue was discovered on D-Link DIR-816 A2 1.10 B05 devices. An HTTP request parameter is used in command string construction within the handler fu…
Dir 816 A2 Firmware
No fix yet
CRITICAL 9.8
CVE-2018-17065
An issue was discovered on D-Link DIR-816 A2 1.10 B05 devices. Within the handler function of the /goform/DDNS route, a very long password could lead…
Dir 816 A2 Firmware
No fix yet
CRITICAL 9.8
CVE-2018-17066EPSS 7%
An issue was discovered on D-Link DIR-816 A2 1.10 B05 devices. An HTTP request parameter is used in command string construction in the handler functi…
Dir 816 A2 Firmware
No fix yet
CRITICAL 9.8
CVE-2018-17067
An issue was discovered on D-Link DIR-816 A2 1.10 B05 devices. A very long password to /goform/formLogin could lead to a stack-based buffer overflow …
Dir 816 A2 Firmware
No fix yet
CRITICAL 9.8
CVE-2018-17068
An issue was discovered on D-Link DIR-816 A2 1.10 B05 devices. An HTTP request parameter is used in command string construction in the handler functi…
Dir 816 A2 Firmware
No fix yet
MEDIUM 5.4
CVE-2018-16605
D-Link DIR-600M devices allow XSS via the Hostname and Username fields in the Dynamic DNS Configuration page.
Dir 600m Firmware
No fix yet
HIGH 8.0
CVE-2018-12710EPSS 77%
An issue was discovered on D-Link DIR-601 2.02NA devices. Being local to the network and having only "User" account (which is a low privilege account…
Dir 601 Firmware
No fix yet
CRITICAL 9.8
CVE-2018-15839EPSS 45%
D-Link DIR-615 devices have a buffer overflow via a long Authorization HTTP header.
Dir 615 Firmware
No fix yet
MEDIUM 6.1
CVE-2018-15874
Cross-site scripting (XSS) vulnerability on D-Link DIR-615 routers 20.07 allows an attacker to inject JavaScript into the "Status -> Active Client Ta…
Dir 615 Firmware
Mitigation only
MEDIUM 6.1
CVE-2018-15875
Cross-site scripting (XSS) vulnerability on D-Link DIR-615 routers 20.07 allows attackers to inject JavaScript into the router's admin UPnP page via …
Dir 615 Firmware
Mitigation only