Vulnerability index

Browse CVEs

1,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dir 859 Firmware CRITICAL 9.8
CVE-2023-36092

Authentication Bypass vulnerability in D-Link DIR-859 FW105b03 allows remote attackers to gain escalated privileges via via phpcgi_main. NOTE: This v…

Mitigation only
Fix from $2,300 2023-07-31
Dir 815 Firmware HIGH 7.5
CVE-2023-37758

D-LINK DIR-815 v1.01 was discovered to contain a buffer overflow via the component /web/captcha.cgi.

Mitigation only
Fix from $1,950 2023-07-18
Dir 619l Firmware CRITICAL 9.8
CVE-2023-37791EPSS 13%

D-Link DIR-619L v2.04(TW) was discovered to contain a stack overflow via the curTime parameter at /goform/formLogin.

No fix yet
Fix from $2,300 2023-07-17
Dir 823g Firmware CRITICAL 9.8
CVE-2023-26612

D-Link DIR-823G firmware version 1.02B05 has a buffer overflow vulnerability, which originates from the HostName field in SetParentsControlInfo.

No fix yet
Fix from $2,300 2023-06-29
Dir 823g Firmware CRITICAL 9.8
CVE-2023-26613EPSS 31%

An OS command injection vulnerability in D-Link DIR-823G firmware version 1.02B05 allows unauthorized attackers to execute arbitrary operating system…

No fix yet
Fix from $2,300 2023-06-29
Dir 823g Firmware CRITICAL 9.8
CVE-2023-26616

D-Link DIR-823G firmware version 1.02B05 has a buffer overflow vulnerability, which originates from the URL field in SetParentsControlInfo.

No fix yet
Fix from $2,300 2023-06-29
Dsl 224 Firmware CRITICAL 9.8
CVE-2023-32224

D-Link DSL-224 firmware version 3.0.10 CWE-307: Improper Restriction of Excessive Authentication Attempts

Mitigation only
Fix from $2,300 2023-06-28
Dsl G256dg Firmware CRITICAL 9.8
CVE-2023-32222

D-Link DSL-G256DG version vBZ_1.00.27 web management interface allows authentication bypass via an unspecified method.

Mitigation only
Fix from $2,300 2023-06-28
Dsl 224 Firmware HIGH 8.8
CVE-2023-32223

D-Link DSL-224 firmware version 3.0.10 allows post authentication command execution via an unspecified method.

Mitigation only
Fix from $1,950 2023-06-28
Dir 823g Firmware HIGH 7.5
CVE-2023-26615

D-Link DIR-823G firmware version 1.02B05 has a password reset vulnerability, which originates from the SetMultipleActions API, allowing unauthorized …

No fix yet
Fix from $1,950 2023-06-28
Go Rt Ac750 Firmware CRITICAL 9.8
CVE-2023-34800EPSS 29%

D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at genacgi_main.

No fix yet
Fix from $2,300 2023-06-15
Dir 600 Firmware CRITICAL 9.8
CVE-2023-33625EPSS 33%

D-Link DIR-600 Hardware Version B5, Firmware Version 2.18 was discovered to contain a command injection vulnerability via the ST parameter in the lxm…

No fix yet
Fix from $2,300 2023-06-12
Dir 600 Firmware CRITICAL 9.8
CVE-2023-33626

D-Link DIR-600 Hardware Version B5, Firmware Version 2.18 was discovered to contain a stack overflow via the gena.cgi binary.

No fix yet
Fix from $2,300 2023-06-12
Di 7500g Ci Firmware MEDIUM 5.4
CVE-2023-34856

A Cross Site Scripting (XSS) vulnerability in D-Link DI-7500G-CI-19.05.29A allows attackers to execute arbitrary code via uploading a crafted HTML fi…

No fix yet
Fix from $1,600 2023-06-09
Dir 842v2 Firmware HIGH 8.8
CVE-2023-33781EPSS 32%

An issue in D-Link DIR-842V2 v1.0.3 allows attackers to execute arbitrary commands via importing a crafted file.

Mitigation only
Fix from $1,950 2023-06-07
Dir 842v2 Firmware HIGH 8.8
CVE-2023-33782EPSS 37%

D-Link DIR-842V2 v1.0.3 was discovered to contain a command injection vulnerability via the iperf3 diagnostics function.

Mitigation only
Fix from $1,950 2023-06-07
Dir 846 Firmware CRITICAL 9.8
CVE-2023-33735EPSS 33%

D-Link DIR-846 v1.00A52 was discovered to contain a remote command execution (RCE) vulnerability via the tomography_ping_address parameter in the /HN…

No fix yet
Fix from $2,300 2023-05-31
Dir 300 Firmware CRITICAL 9.8
CVE-2023-31814

D-Link DIR-300 firmware <=REVA1.06 and <=REVB2.06 is vulnerable to File inclusion via /model/__lang_msg.php.

Fix: after 2.06
Fix from $2,300 2023-05-23
Dir 605l Firmware CRITICAL 9.8
CVE-2023-29961

D-Link DIR-605L firmware version 1.17B01 BETA is vulnerable to stack overflow via /goform/formTcpipSetup,

No fix yet
Fix from $2,300 2023-05-16
Dir 868l Firmware CRITICAL 9.8
CVE-2023-29856

D-Link DIR-868L Hardware version A1, firmware version 1.12 is vulnerable to Buffer Overflow. The vulnerability is in scandir.sgi binary.

Mitigation only
Fix from $2,300 2023-05-02
Dir 879 Firmware HIGH 7.5
CVE-2023-30061

D-Link DIR-879 v105A1 is vulnerable to Authentication Bypass via phpcgi.

No fix yet
Fix from $1,950 2023-05-01
Dir 890l Firmware HIGH 7.5
CVE-2023-30063

D-Link DIR-890L FW1.10 A1 is vulnerable to Authentication bypass.

No fix yet
Fix from $1,950 2023-05-01
Dir 823g Firmware CRITICAL 9.8
CVE-2023-29665

D-Link DIR823G_V1.0.2B05 was discovered to contain a stack overflow via the NewPassword parameters in SetPasswdSettings.

No fix yet
Fix from $2,300 2023-04-17
Dir 819 Firmware HIGH 7.5
CVE-2022-40946EPSS 8%

On D-Link DIR-819 Firmware Version 1.06 Hardware Version A1 devices, it is possible to trigger a Denial of Service via the sys_token parameter in a c…

No fix yet
Fix from $1,950 2023-04-16
Dsl 3782 Firmware HIGH 8.8
CVE-2023-27216

An issue found in D-Link DSL-3782 v.1.03 allows remote authenticated users to execute arbitrary code as root via the network settings page.

Mitigation only
Fix from $1,950 2023-04-12
Dir878 Firmware CRITICAL 9.8
CVE-2023-27718

D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_498308 function. This vulnerability allows attackers to cause a Denial of…

No fix yet
Fix from $2,300 2023-04-09
Dir878 Firmware CRITICAL 9.8
CVE-2023-27719

D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_478360 function. This vulnerability allows attackers to cause a Denial of…

No fix yet
Fix from $2,300 2023-04-09
Dir 878 Firmware CRITICAL 9.8
CVE-2023-27720

D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_48d630 function. This vulnerability allows attackers to cause a Denial of…

No fix yet
Fix from $2,300 2023-04-09
Dir 882 A1 Firmware CRITICAL 9.8
CVE-2023-24797

D-Link DIR882 DIR882A1_FW110B02 was discovered to contain a stack overflow in the sub_48AC20 function. This vulnerability allows attackers to cause a…

No fix yet
Fix from $2,300 2023-04-07
Dir 878 Firmware CRITICAL 9.8
CVE-2023-24798

D-Link DIR878 DIR_878_FW120B05 was discovered to contain a stack overflow in the sub_475FB0 function. This vulnerability allows attackers to cause a …

Mitigation only
Fix from $2,300 2023-04-07