Vulnerability index

Browse CVEs

1,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dir 816 Firmware CRITICAL 9.8
CVE-2023-24331

Command Injection vulnerability in D-Link Dir 816 with firmware version DIR-816_A2_v1.10CNB04 allows attackers to run arbitrary commands via the urlA…

No fix yet
Fix from $2,300 2024-02-21
Dir 882 Firmware HIGH 8.8
CVE-2023-24330

Command Injection vulnerability in D-Link Dir 882 with firmware version DIR882A1_FW130B06 allows attackers to run arbitrary commands via crafted POST…

No fix yet
Fix from $1,950 2024-02-21
Dir 816 Firmware CRITICAL 9.8
CVE-2024-24321

An issue in Dlink DIR-816A2 v.1.10CNB05 allows a remote attacker to execute arbitrary code via the wizardstep4_ssid_2 parameter in the sub_42DA54 fun…

Mitigation only
Fix from $2,300 2024-02-08
Go Rt Ac750 Firmware CRITICAL 9.8
CVE-2024-22852

D-Link Go-RT-AC750 GORTAC750_A1_FW_v101b03 contains a stack-based buffer overflow via the function genacgi_main. This vulnerability allows attackers …

No fix yet
Fix from $2,300 2024-02-06
Go Rt Ac750 Firmware CRITICAL 9.8
CVE-2024-22853

D-LINK Go-RT-AC750 GORTAC750_A1_FW_v101b03 has a hardcoded password for the Alphanetworks account, which allows remote attackers to obtain root acces…

No fix yet
Fix from $2,300 2024-02-06
Dir 816 A2 Firmware CRITICAL 9.8
CVE-2024-0921EPSS 38%

A vulnerability has been found in D-Link DIR-816 A2 1.10CNB04 and classified as critical. Affected by this vulnerability is an unknown functionality …

No fix yet
Fix from $2,300 2024-01-26
Dap 1650 Firmware CRITICAL 9.8
CVE-2024-23624EPSS 26%

A command injection vulnerability exists in the gena.cgi module of D-Link DAP-1650 devices. An unauthenticated attacker can exploit this vulnerabilit…

Mitigation only
Fix from $2,300 2024-01-26
Dap 1650 Firmware CRITICAL 9.8
CVE-2024-23625EPSS 23%

A command injection vulnerability exists in D-Link DAP-1650 devices when handling UPnP SUBSCRIBE messages. An unauthenticated attacker can exploit th…

Mitigation only
Fix from $2,300 2024-01-26
Dir 882 A1 Firmware CRITICAL 9.8
CVE-2024-22751

D-Link DIR-882 DIR882A1_FW130B06 was discovered to contain a stack overflow via the sub_477AA0 function.

No fix yet
Fix from $2,300 2024-01-24
Dir 815 Firmware CRITICAL 9.8
CVE-2024-22651EPSS 20%

There is a command injection vulnerability in the ssdpcgi_main function of cgibin binary in D-Link DIR-815 router firmware v1.04.

Fix: after 1.04
Fix from $2,300 2024-01-24
Dir 859 Firmware CRITICAL 9.8
CVE-2024-0769 KEVEPSS 83%

** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DIR-859 1.06B01. It has been rated as critical. Affected by this issue is some un…

Mitigation only
Fix from $2,300 2024-01-21
Dir 825acg1 Firmware MEDIUM 5.3
CVE-2024-0717EPSS 18%

A vulnerability classified as critical was found in D-Link DAP-1360, DIR-300, DIR-615, DIR-615GF, DIR-615S, DIR-615T, DIR-620, DIR-620S, DIR-806A, DI…

Fix: after 2024-01-12
Fix from $1,600 2024-01-19
Go Rt Ac750 Firmware CRITICAL 9.8
CVE-2024-22916

In D-LINK Go-RT-AC750 v101b03, the sprintf function in the sub_40E700 function within the cgibin is susceptible to stack overflow.

No fix yet
Fix from $2,300 2024-01-16
Dir 822 Firmware CRITICAL 9.8
CVE-2023-51984

D-Link DIR-822+ V1.0.2 was found to contain a command injection in SetStaticRouteSettings function. allows remote attackers to execute arbitrary comm…

No fix yet
Fix from $2,300 2024-01-11
Dir 822 Firmware CRITICAL 9.8
CVE-2023-51987

D-Link DIR-822+ V1.0.2 contains a login bypass in the HNAP1 interface, which allows attackers to log in to administrator accounts with empty password…

No fix yet
Fix from $2,300 2024-01-11
Dir 815 Firmware CRITICAL 9.8
CVE-2023-51123EPSS 24%

An issue discovered in D-Link dir815 v.1.01SSb08.bin allows a remote attacker to execute arbitrary code via a crafted POST request to the service par…

No fix yet
Fix from $2,300 2024-01-10
R15 Firmware MEDIUM 5.3
CVE-2023-41603

D-Link R15 before v1.08.02 was discovered to contain no firewall restrictions for IPv6 traffic. This allows attackers to arbitrarily access any servi…

Fix: after 1.08.02
Fix from $1,600 2024-01-10
D View 8 CRITICAL 9.8
CVE-2023-7163

A security issue exists in D-Link D-View 8 v2.0.2.89 and prior that could allow an attacker to manipulate the probe inventory of the D-View service. …

No fix yet
Fix from $2,300 2023-12-28
Dir 850l Firmware CRITICAL 9.8
CVE-2023-49004

An issue in D-Link DIR-850L v.B1_FW223WWb01 allows a remote attacker to execute arbitrary code via a crafted script to the en parameter.

Mitigation only
Fix from $2,300 2023-12-19
Dar 7000 Firmware CRITICAL 9.8
CVE-2023-6581

A vulnerability has been found in D-Link DAR-7000 up to 20231126 and classified as critical. This vulnerability affects unknown code of the file /use…

Fix: after 2023-11-26
Fix from $2,300 2023-12-07
Dir 846 Firmware HIGH 8.8
CVE-2023-6580

A vulnerability, which was classified as critical, was found in D-Link DIR-846 FW100A53DBR. This affects an unknown part of the file /HNAP1/ of the c…

No fix yet
Fix from $1,950 2023-12-07
Go Rt Ac750 Firmware CRITICAL 9.8
CVE-2023-48842

D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at hedwig.cgi.

No fix yet
Fix from $2,300 2023-12-01
Dar 7000 Firmware CRITICAL 9.8
CVE-2023-42406

SQL injection vulnerability in D-Link Online behavior audit gateway DAR-7000 V31R02B1413C allows a remote attacker to obtain sensitive information an…

No fix yet
Fix from $2,300 2023-10-26
Dsl 2730u Firmware MEDIUM 6.8
CVE-2023-46033

D-Link (Non-US) DSL-2750U N300 ADSL2+ and (Non-US) DSL-2730U N150 ADSL2+ are vulnerable to Incorrect Access Control. The UART/Serial interface on the…

Mitigation only
Fix from $1,600 2023-10-19
Dar 7000 Firmware CRITICAL 9.8
CVE-2023-44693EPSS 13%

D-Link Online behavior audit gateway DAR-7000 V31R02B1413C is vulnerable to SQL Injection via /importexport.php.

No fix yet
Fix from $2,300 2023-10-17
Dar 7000 Firmware CRITICAL 9.8
CVE-2023-44694

D-Link Online behavior audit gateway DAR-7000 V31R02B1413C is vulnerable to SQL Injection via /log/mailrecvview.php.

No fix yet
Fix from $2,300 2023-10-17
Di 7003g Firmware CRITICAL 9.8
CVE-2023-45579

Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.2…

Fix: after 23.08.25d1
Fix from $2,300 2023-10-16
Di 7003g Firmware CRITICAL 9.8
CVE-2023-45580

Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.2…

Fix: after 23.08.25d1
Fix from $2,300 2023-10-16
Di 7003g Firmware CRITICAL 9.8
CVE-2023-45576

Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.2…

Fix: after 23.08.25d1
Fix from $2,300 2023-10-16
Di 7003g Firmware CRITICAL 9.8
CVE-2023-45577

Stack Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23…

Fix: after 23.08.25d1
Fix from $2,300 2023-10-16