Vulnerability index

Browse CVEs

1,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dir 619 Firmware HIGH 7.5
CVE-2022-27292

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formLanguageChange. This vulnerability allows attackers to cause a…

Mitigation only
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27293

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formWlanSetup. This vulnerability allows attackers to cause a Deni…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27294

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formWlanWizardSetup. This vulnerability allows attackers to cause …

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27295

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formAdvanceSetup. This vulnerability allows attackers to cause a D…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Ax Firmware HIGH 7.5
CVE-2022-27286

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanNonLogin. This vulnerability allows attackers to cause a…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Ax Firmware HIGH 7.5
CVE-2022-27287

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanPPPoE. This vulnerability allows attackers to cause a De…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27288

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanPPTP. This vulnerability allows attackers to cause a Den…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27289

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanL2TP. This vulnerability allows attackers to cause a Den…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27290

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanDhcpplus. This vulnerability allows attackers to cause a…

No fix yet
Fix from $1,950 2022-04-10
Dir 619 Firmware HIGH 7.5
CVE-2022-27291

D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formdumpeasysetup. This vulnerability allows attackers to cause a …

No fix yet
Fix from $1,950 2022-04-10
Dir 823g Firmware CRITICAL 9.8
CVE-2021-43474

An Access Control vulnerability exists in D-Link DIR-823G REVA1 1.02B05 (Lastest) via any parameter in the HNAP1 function

No fix yet
Fix from $2,300 2022-04-07
Dir 878 Firmware HIGH 8.8
CVE-2022-26670

D-Link DIR-878 has inadequate filtering for special characters in the webpage input field. An unauthenticated LAN attacker can perform command inject…

Fix: after 1.20b05
Fix from $1,950 2022-04-07
Dir 645 Firmware CRITICAL 9.8
CVE-2021-43722

D-Link DIR-645 1.03 A1 is vulnerable to Buffer Overflow. The hnap_main function in the cgibin handler uses sprintf to format the soapaction header on…

No fix yet
Fix from $2,300 2022-03-31
Dir 820l Firmware CRITICAL 9.8
CVE-2022-26258 KEVEPSS 80%

D-Link DIR-820L 1.05B03 was discovered to contain remote command execution (RCE) vulnerability via HTTP POST to get set ccp.

Mitigation only
Fix from $2,300 2022-03-28
Dap 1360f1 Firmware CRITICAL 9.8
CVE-2021-44127

In DLink DAP-1360 F1 firmware version <=v6.10 in the "webupg" binary, an attacker can use the "file" parameter to execute arbitrary system commands w…

Fix: after 6.10
Fix from $2,300 2022-03-27
Dir 816 Firmware CRITICAL 9.8
CVE-2021-31326

D-Link DIR-816 A2 1.10 B05 allows unauthenticated attackers to arbitrarily reset the device via a crafted tokenid parameter to /goform/form2Reboot.cg…

No fix yet
Fix from $2,300 2022-03-24
Dir X1860 Firmware MEDIUM 5.3
CVE-2021-46353

An information disclosure in web interface in D-Link DIR-X1860 before 1.03 RevA1 allows a remote unauthenticated attacker to send a specially crafted…

Fix: after 1.03
Fix from $1,600 2022-03-04
Dir 859 Firmware MEDIUM 5.5
CVE-2022-25106EPSS 9%

D-Link DIR-859 v1.05 was discovered to contain a stack-based buffer overflow via the function genacgi_main. This vulnerability allows attackers to ca…

No fix yet
Fix from $1,600 2022-03-04
Dap 1620 Firmware HIGH 7.5
CVE-2021-46381EPSS 58%

Local File Inclusion due to path traversal in D-Link DAP-1620 leads to unauthorized internal files reading [/etc/passwd] and [/etc/shadow].

No fix yet
Fix from $1,950 2022-03-04
Dir 850l Firmware MEDIUM 6.1
CVE-2021-46379EPSS 16%

DLink DIR850 ET850-1.08TRb03 is affected by an incorrect access control vulnerability through URL redirection to untrusted site.

No fix yet
Fix from $1,600 2022-03-04
Dir 850l Firmware HIGH 7.5
CVE-2021-46378EPSS 32%

DLink DIR850 ET850-1.08TRb03 is affected by an incorrect access control vulnerability through an unauthenticated remote configuration download.

No fix yet
Fix from $1,950 2022-03-04
Dsl 2730e Firmware MEDIUM 5.4
CVE-2021-46108

D-Link DSL-2730E CT-20131125 devices allow XSS via the username parameter to the password page in the maintenance configuration.

Mitigation only
Fix from $1,600 2022-02-18
Dir 846 Firmware CRITICAL 9.8
CVE-2021-46315EPSS 7%

Remote Command Execution (RCE) vulnerability exists in HNAP1/control/SetWizardConfig.php in D-Link Router DIR-846 DIR846A1_FW100A43.bin and DIR846enF…

No fix yet
Fix from $2,300 2022-02-17
Dir 846 Firmware CRITICAL 9.8
CVE-2021-46319EPSS 7%

Remote Code Execution (RCE) vulnerability exists in D-Link Router DIR-846 DIR846A1_FW100A43.bin and DIR846enFW100A53DLA-Retail.bin. Malicious users c…

No fix yet
Fix from $2,300 2022-02-17
Dir 820l Firmware CRITICAL 9.8
CVE-2021-45382 KEVEPSS 98%

A Remote Command Execution (RCE) vulnerability exists in all series H/W revisions D-link DIR-810L, DIR-820L/LW, DIR-826L, DIR-830L, and DIR-836L rout…

Mitigation only
Fix from $2,300 2022-02-17
Dir 846 Firmware CRITICAL 9.8
CVE-2021-46314EPSS 33%

A Remote Command Execution (RCE) vulnerability exists in HNAP1/control/SetNetworkTomographySettings.php of D-Link Router DIR-846 DIR846A1_FW100A43.bi…

No fix yet
Fix from $2,300 2022-02-17
Dir X1860 Firmware MEDIUM 6.1
CVE-2021-41445

A reflected cross-site-scripting attack in web application of D-Link DIR-X1860 before v1.10WWB09_Beta allows a remote unauthenticated attacker to exe…

Fix: after 1.03
Fix from $1,600 2022-02-10
Dir X1860 Firmware HIGH 7.5
CVE-2021-41442

An HTTP smuggling attack in the web application of D-Link DIR-X1860 before v1.10WWB09_Beta allows a remote unauthenticated attacker to DoS the web ap…

Fix: after 1.03
Fix from $1,950 2022-02-09
Dir X1860 Firmware HIGH 7.4
CVE-2021-41441

A DoS attack in the web application of D-Link DIR-X1860 before v1.10WWB09_Beta allows a remote unauthenticated attacker to reboot the router via send…

Fix: after 1.03
Fix from $1,950 2022-02-09
Dir 882 Firmware CRITICAL 9.8
CVE-2021-45998

D-Link device DIR_882 DIR_882_FW1.30B06_Hotfix_02 was discovered to contain a command injection vulnerability in the LocalIPAddress parameter. This v…

Fix: after 1.30b06
Fix from $2,300 2022-02-04