Vulnerability index

Browse CVEs

1,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Dir 816l Firmware MEDIUM 6.8
CVE-2015-5999

Multiple cross-site request forgery (CSRF) vulnerabilities in the D-Link DIR-816L Wireless Router with firmware before 2.06.B09_BETA allow remote att…

Fix: after 2.05.b02
Fix from $1,600 2015-11-18
Dir 905l Firmware CRITICAL 9.8
CVE-2014-8361 KEVEPSS 100%

The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request, as exploited in th…

Fix: 1.15b01+
Fix from $2,300 2015-05-01
Dir 645 Firmware HIGH 10.0
CVE-2015-2052EPSS 5%

Stack-based buffer overflow in the DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remote attackers to execute arbitra…

Fix: after 1.04b12
Fix from $1,950 2015-02-23
Dir 645 Firmware HIGH 8.8
CVE-2015-2051 KEVEPSS 97%

The D-Link DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remote attackers to execute arbitrary commands via a GetDev…

Fix: 1.05b01+
Fix from $1,950 2015-02-23
Dap 1320 Firmware HIGH 10.0
CVE-2015-2050

D-Link DAP-1320 Rev Ax with firmware before 1.21b05 allows attackers to execute arbitrary commands via unspecified vectors.

Fix: after 1.11
Fix from $1,950 2015-02-23
Dcs 931l Firmware HIGH 9.0
CVE-2015-2049EPSS 67%

Unrestricted file upload vulnerability in D-Link DCS-931L with firmware 1.04 and earlier allows remote authenticated users to execute arbitrary code …

Fix: after 1.04
Fix from $1,950 2015-02-23
Dcs 931l Firmware MEDIUM 6.8
CVE-2015-2048

Cross-site request forgery (CSRF) vulnerability in D-Link DCS-931L with firmware 1.04 and earlier allows remote attackers to hijack the authenticatio…

Fix: after 1.04
Fix from $1,600 2015-02-23
Dap 1360 Firmware MEDIUM 6.8
CVE-2014-10027

Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DAP-1360 router with firmware 2.5.4 and earlier allow remote attackers to hijack…

Fix: after 2.5.4
Fix from $1,600 2015-01-13
Dap 1360 Firmware MEDIUM 5.0
CVE-2014-10026

index.cgi in D-Link DAP-1360 with firmware 2.5.4 and earlier allows remote attackers to bypass authentication and obtain sensitive information by set…

Fix: after 2.5.4
Fix from $1,600 2015-01-13
Dap 1360 Firmware MEDIUM 6.8
CVE-2014-10025

Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DAP-1360 with firmware 2.5.4 and earlier allow remote attackers to hijack the au…

Fix: after 2.5.4
Fix from $1,600 2015-01-13
Dir 600 Firmware HIGH 8.0
CVE-2014-100005 KEVEPSS 42%

Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DIR-600 router (rev. Bx) with firmware before 2.17b02 allow remote attackers to …

Fix: after 2.16ww
Fix from $1,950 2015-01-13
Dir 601 Firmware MEDIUM 5.0
CVE-2011-4821

Directory traversal vulnerability in the TFTP server in D-Link DIR-601 Wireless N150 Home Router with firmware 1.02NA allows remote attackers to read…

Mitigation only
Fix from $1,600 2014-06-20
Dir505 Shareport Mobile Companion Firmware HIGH 10.0
CVE-2014-3936EPSS 77%

Stack-based buffer overflow in the do_hnap function in www/my_cgi.cgi in D-Link DSP-W215 (Rev. A1) with firmware 1.01b06 and earlier, DIR-505 with fi…

Fix: after 1.07
Fix from $1,950 2014-06-02
Dap 1350 Firmware HIGH 7.5
CVE-2014-3872

Multiple SQL injection vulnerabilities in the administration login page in D-Link DAP-1350 (Rev. A1) with firmware 1.14 and earlier allow remote atta…

Fix: after 1.14
Fix from $1,950 2014-05-27
Dap 1150 Firmware MEDIUM 6.8
CVE-2014-3760

Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DAP 1150 with firmware 1.2.94 allow remote attackers to hijack the authenticatio…

No fix yet
Fix from $1,600 2014-05-16
Dir 826l Wireless N600 Cloud Router Firmware HIGH 9.3
CVE-2013-4772

D-Link DIR-505L SharePort Mobile Companion 1.01 and DIR-826L Wireless N600 Cloud Router 1.02 allows remote attackers to bypass authentication via a d…

No fix yet
Fix from $1,950 2014-05-12
Des 3810 28 Firmware MEDIUM 5.4
CVE-2013-7308

The OSPF implementation on the D-Link DES-3810-28 switch with firmware R2.20.B017 does not consider the possibility of duplicate Link State ID values…

Mitigation only
Fix from $1,600 2014-01-23
Dsr 500 Firmware HIGH 7.8
CVE-2013-7004

D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware before 1.08B44; and DSR-500, D…

Fix: after 1.08b51
Fix from $1,950 2013-12-19
Dsr 500 Firmware HIGH 10.0
CVE-2013-5946EPSS 7%

The runShellCmd function in systemCheck.htm in D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-25…

Fix: after 1.08b51
Fix from $1,950 2013-12-19
Des 3800 Firmware HIGH 7.8
CVE-2013-5998

Unspecified vulnerability in the Web manager implementation on D-Link Japan DES-3800 devices with firmware before R4.50B58 allows remote attackers to…

Mitigation only
Fix from $1,950 2013-11-22
Des 3800 Firmware MEDIUM 6.8
CVE-2013-5997

Unspecified vulnerability in the SSH implementation on D-Link Japan DES-3800 devices with firmware before R4.50B58 allows remote authenticated users …

Mitigation only
Fix from $1,600 2013-11-22
Dsl 2740b Firmware MEDIUM 6.8
CVE-2013-5730

Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DSL-2740B Gateway with firmware EU_1.00 allow remote attackers to hijack the aut…

No fix yet
Fix from $1,600 2013-11-20
Dir865l Firmware MEDIUM 6.8
CVE-2013-3095

Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DIR865L router (Rev. A1) with firmware before 1.05b07 allow remote attackers to …

Fix: after 1.05
Fix from $1,600 2013-11-20
Dsl 2760u Firmware MEDIUM 5.4
CVE-2013-5223 KEVEPSS 34%

Multiple cross-site scripting (XSS) vulnerabilities in D-Link DSL-2760U Gateway (Rev. E1) allow remote authenticated users to inject arbitrary web sc…

Fix: 1.12+
Fix from $1,600 2013-11-19
Dsl 2740b Firmware HIGH 7.6
CVE-2013-2271

The D-Link DSL-2740B Gateway with firmware EU_1.0, when an active administrator session exists, allows remote attackers to bypass authentication and …

No fix yet
Fix from $1,950 2013-11-19
Dir 100 HIGH 8.5
CVE-2013-6027

Stack-based buffer overflow in the RuntimeDiagnosticPing function in /bin/webs on D-Link DIR-100 routers might allow remote authenticated administrat…

No fix yet
Fix from $1,950 2013-10-19
Di 524up HIGH 10.0
CVE-2013-6026EPSS 8%

The web interface on D-Link DIR-100, DIR-120, DI-624S, DI-524UP, DI-604S, DI-604UP, DI-604+, and TM-G5240 routers; Planex BRL-04R, BRL-04UR, and BRL-…

Mitigation only
Fix from $1,950 2013-10-19
Dwl 2100ap MEDIUM 6.3
CVE-2013-4706

The SSH implementation on the D-Link Japan DWL-2100AP with firmware before R252JP-RC572 allows remote authenticated users to cause a denial of servic…

Fix: after 2.50
Fix from $1,600 2013-09-20
Des 3810 Firmware MEDIUM 6.3
CVE-2013-4707

The SSH implementation on D-Link Japan DES-3810 devices with firmware before R2.20.011 allows remote authenticated users to cause a denial of service…

Mitigation only
Fix from $1,600 2013-09-20
Dsl 2640b Firmware MEDIUM 6.8
CVE-2012-1308

Cross-site request forgery (CSRF) vulnerability in redpass.cgi in D-Link DSL-2640B Firmware EU_4.00 allows remote attackers to hijack the authenticat…

No fix yet
Fix from $1,600 2012-10-08