Vulnerability index

Browse CVEs

1,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dir 823x Firmware HIGH 8.8
CVE-2025-55848

An issue was discovered in DIR-823 firmware 20250416. There is an RCE vulnerability in the set_cassword settings interface, as the http_casswd parame…

No fix yet
Fix from $1,950 2025-09-26
Di 7100g Firmware MEDIUM 6.5
CVE-2025-57636

OS Command injection vulnerability in D-Link C1 2020-02-21. The sub_47F028 function in jhttpd contains a command injection vulnerability via the HTTP…

No fix yet
Fix from $1,600 2025-09-23
Di 7100g Firmware HIGH 7.5
CVE-2025-57637

Buffer overflow vulnerability in D-Link DI-7100G 2020-02-21 in the sub_451754 function of the jhttpd service in the viav4 parameter allowing attacker…

No fix yet
Fix from $1,950 2025-09-23
Dir 823x Firmware HIGH 8.8
CVE-2025-10814EPSS 6%

A vulnerability was determined in D-Link DIR-823X 240126/240802/250416. Affected by this vulnerability is an unknown functionality of the file /usr/s…

No fix yet
Fix from $1,950 2025-09-22
Dir 513 Firmware HIGH 8.8
CVE-2025-10792

A security vulnerability has been detected in D-Link DIR-513 A1FW110. Affected is an unknown function of the file /goform/formWPS. Such manipulation …

No fix yet
Fix from $1,950 2025-09-22
Dcs 935l Firmware CRITICAL 9.8
CVE-2025-10779

A vulnerability was found in D-Link DCS-935L up to 1.13.01. The impacted element is the function sub_402280 of the file /HNAP1/. The manipulation of …

Fix: after 1.13.01
Fix from $2,300 2025-09-22
Dir 645 Firmware CRITICAL 9.8
CVE-2025-10689

A vulnerability was identified in D-Link DIR-645 105B01. This issue affects the function soapcgi_main of the file /soap.cgi. Such manipulation of the…

Mitigation only
Fix from $2,300 2025-09-18
Dir 825 Firmware CRITICAL 9.8
CVE-2025-10666

A security flaw has been discovered in D-Link DIR-825 up to 2.10. Affected by this vulnerability is the function sub_4106d4 of the file apply.cgi. Th…

Fix: after 2.10
Fix from $2,300 2025-09-18
Dir 823x Firmware HIGH 8.8
CVE-2025-10634EPSS 7%

A weakness has been identified in D-Link DIR-823X 240126/240802/250416. The impacted element is the function sub_412E7C of the file /usr/sbin/goahead…

No fix yet
Fix from $1,950 2025-09-18
Dir 852 Firmware HIGH 8.8
CVE-2025-10629EPSS 5%

A vulnerability was determined in D-Link DIR-852 1.00CN B09. This issue affects the function ssdpcgi_main of the file htodcs/cgibin of the component …

No fix yet
Fix from $1,950 2025-09-18
Dir 852 Firmware HIGH 8.8
CVE-2025-10628EPSS 9%

A vulnerability was found in D-Link DIR-852 1.00CN B09. This vulnerability affects unknown code of the file /htdocs/cgibin/hedwig.cgi of the componen…

No fix yet
Fix from $1,950 2025-09-18
Dir 823x Firmware HIGH 8.8
CVE-2025-10401EPSS 8%

A vulnerability was detected in D-Link DIR-823x up to 250416. The affected element is an unknown function of the file /goform/diag_ping. Performing m…

Fix: after 250416
Fix from $1,950 2025-09-14
Dir 823x Firmware CRITICAL 9.8
CVE-2025-10123

A vulnerability was determined in D-Link DIR-823X up to 250416. Affected by this vulnerability is the function sub_415028 of the file /goform/set_sta…

Fix: after 250416
Fix from $2,300 2025-09-09
Dir 852 Firmware HIGH 7.5
CVE-2025-10093

A vulnerability was identified in D-Link DIR-852 up to 1.00CN B09. Affected by this vulnerability is the function phpcgi_main of the file /getcfg.php…

No fix yet
Fix from $1,950 2025-09-08
Dir 825 Firmware CRITICAL 9.8
CVE-2025-10034

A vulnerability was found in D-Link DIR-825 1.08.01. This impacts the function get_ping6_app_stat of the file ping6_response.cg of the component http…

Mitigation only
Fix from $2,300 2025-09-06
Di 8400 Firmware HIGH 8.8
CVE-2025-9938

A weakness has been identified in D-Link DI-8400 16.07.26A1. The affected element is the function yyxz_dlink_asp of the file /yyxz.asp. This manipula…

No fix yet
Fix from $1,950 2025-09-04
Di 7400g\+ Firmware MEDIUM 6.2
CVE-2025-9769EPSS 26%

A security flaw has been discovered in D-Link DI-7400G+ 19.12.25A1. Affected is the function sub_478D28 of the file /mng_platform.asp. The manipulati…

No fix yet
Fix from $1,600 2025-09-01
Dir 852 Firmware CRITICAL 9.8
CVE-2025-9752EPSS 16%

A security vulnerability has been detected in D-Link DIR-852 1.00CN B09. Impacted is the function soapcgi_main of the file soap.cgi of the component …

Mitigation only
Fix from $2,300 2025-09-01
Di 500wf Firmware HIGH 7.2
CVE-2025-9745EPSS 10%

A security vulnerability has been detected in D-Link DI-500WF 14.04.10A1T. The impacted element is an unknown function of the file /version_upgrade.a…

No fix yet
Fix from $1,950 2025-08-31
Dir 816l Firmware CRITICAL 9.8
CVE-2025-9727

A weakness has been identified in D-Link DIR-816L 206b01. Affected by this issue is the function soapcgi_main of the file /soap.cgi. This manipulatio…

Mitigation only
Fix from $2,300 2025-08-31
Dir 868l Firmware CRITICAL 9.8
CVE-2025-55583EPSS 6%

D-Link DIR-868L B1 router firmware version FW2.05WWB02 contains an unauthenticated OS command injection vulnerability in the fileaccess.cgi component…

Mitigation only
Fix from $2,300 2025-08-28
Dir 110 Firmware CRITICAL 9.8
CVE-2018-25115EPSS 9%

Multiple D-Link DIR-series routers, including DIR-110, DIR-412, DIR-600, DIR-610, DIR-615, DIR-645, and DIR-815 firmware version 1.03, contain a vuln…

Mitigation only
Fix from $2,300 2025-08-27
Dcs 825l Firmware MEDIUM 6.6
CVE-2025-55582

D-Link DCS-825L firmware v1.08.01 contains a vulnerability in the watchdog script `mydlink-watch-dog.sh`, which blindly respawns binaries such as `dc…

No fix yet
Fix from $1,600 2025-08-27
Dsl 7740c Firmware HIGH 7.2
CVE-2025-29523

D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability via the ping6 function.

No fix yet
Fix from $1,950 2025-08-25
Di 8100 Firmware HIGH 7.0
CVE-2025-51281

D-Link DI-8100 16.07.26A1 is vulnerable to Buffer Overflow via the en`, `val and id parameters in the qj_asp function. This vulnerability allows auth…

No fix yet
Fix from $1,950 2025-08-25
Dsl 7740c Firmware MEDIUM 6.5
CVE-2025-29522

D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability via the ping function.

No fix yet
Fix from $1,600 2025-08-25
Dsl 7740c Firmware MEDIUM 5.3
CVE-2025-29520

Incorrect access control in the Maintenance module of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows authenticated attackers with l…

No fix yet
Fix from $1,600 2025-08-25
Dsl 7740c Firmware MEDIUM 5.3
CVE-2025-29521

Insecure default credentials for the Adminsitrator account of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to escalate …

No fix yet
Fix from $1,600 2025-08-25
Dsl 7740c Firmware MEDIUM 5.3
CVE-2025-29519

A command injection vulnerability in the EXE parameter of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to execute arbit…

No fix yet
Fix from $1,600 2025-08-25
Dsl 7740c Firmware CRITICAL 9.8
CVE-2025-29514

Incorrect access control in the config.xgi function of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to download the con…

Mitigation only
Fix from $2,300 2025-08-25