Vulnerability index

Browse CVEs

1,663 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2022-35620EPSS 32% D-LINK DIR-818LW A1:DIR818L_FW105b01 was discovered to contain a remote code execution (RCE) vulnerability via the function binary.soapcgi_main. Dir 818l Firmware No fix yet Fix from $2,3002022-08-03 HIGH 7.5 CVE-2022-34973EPSS 15% D-Link DIR820LA1_FW106B02 was discovered to contain a buffer overflow via the nextPage parameter at ping.ccp. Dir 820l Firmware No fix yet Fix from $1,9502022-08-03 HIGH 8.8 CVE-2022-34527 D-Link DSL-3782 v1.03 and below was discovered to contain a command injection vulnerability via the function byte_4C0160. Dsl 3782 Firmware No fix yet Fix from $1,9502022-07-29 HIGH 8.8 CVE-2022-34528 D-Link DSL-3782 v1.03 and below was discovered to contain a stack overflow via the function getAttrValue. Dsl 3782 Firmware No fix yet Fix from $1,9502022-07-29 CRITICAL 9.8 CVE-2022-32092EPSS 6% D-Link DIR-645 v1.03 was discovered to contain a command injection vulnerability via the QUERY_STRING parameter at __ajax_explorer.sgi. Dir 645 Firmware after 1.03 Fix from $2,3002022-06-27 HIGH 7.5 CVE-2018-18907 An issue was discovered on D-Link DIR-850L 1.21WW devices. A partially completed WPA handshake is sufficient for obtaining full access to the wireles… Dir 850l Firmare 1.21b07+ Fix from $1,9502022-06-16 HIGH 8.8 CVE-2022-29778 D-Link DIR-890L 1.20b01 allows attackers to execute arbitrary code due to the hardcoded option Wake-On-Lan for the parameter 'descriptor' at SetVirtu… Dir 890l Firmware after 1.22b01 Fix from $1,9502022-06-03 CRITICAL 9.8 CVE-2022-30521EPSS 14% The LAN-side Web-Configuration Interface has Stack-based Buffer Overflow vulnerability in the D-Link Wi-Fi router firmware DIR-890L DIR890LA1_FW107b0… Dir 890l Firmware after 1.07b09 Fix from $2,3002022-06-02 CRITICAL 9.8 CVE-2022-28932 D-Link DSL-G2452DG HW:T1\\tFW:ME_2.00 was discovered to contain insecure permissions. Dsl G2452dg Firmware Mitigation only Fix from $2,3002022-05-23 CRITICAL 9.8 CVE-2022-28956EPSS 23% An issue in the getcfg.php component of D-Link DIR816L_FW206b01 allows attackers to access the device via a crafted payload. Dir 816l Firmware No fix yet Fix from $2,3002022-05-18 HIGH 7.5 CVE-2022-28955EPSS 40% An access control issue in D-Link DIR816L_FW206b01 allows unauthenticated attackers to access folders folder_view.php and category_view.php. Dir 816l Firmware No fix yet Fix from $1,9502022-05-18 MEDIUM 6.5 CVE-2022-29332 D-LINK DIR-825 AC1200 R2 is vulnerable to Directory Traversal. An attacker could use the "../../../../" setting of the FTP server folder to set the r… Dir 825 Firmware No fix yet Fix from $1,6002022-05-17 CRITICAL 9.8 CVE-2022-28915EPSS 7% D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a command injection vulnerability via the admuser and admpass parameters in /goform/setSysAdm. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29321 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the lanip parameter in /goform/setNetworkLan. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29322EPSS 17% D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the IPADDR and nvmacaddr parameters in /goform/form2Dhcpip. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29323 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the MAC parameter in /goform/editassignment. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29324 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the proto parameter in /goform/form2IPQoSTcAdd. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29325 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addurlfilter parameter in /goform/websURLFilter. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29326 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the addhostfilter parameter in /goform/websHostFilter. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29327 D-Link DIR-816 A2_v1.10CNB04 was discovered to contain a stack overflow via the urladd parameter in /goform/websURLFilterAddDel. Dir 816 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29328EPSS 14% D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a stack overflow via the function checkvalidupgrade. Dap 1330 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-29329EPSS 14% D-Link DAP-1330_OSS-firmware_1.00b21 was discovered to contain a heap overflow via the devicename parameter in /goform/setDeviceSettings. Dap 1330 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-28895 A command injection vulnerability in the component /setnetworksettings/IPAddress of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate priv… Dir 882 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-28896 A command injection vulnerability in the component /setnetworksettings/SubnetMask of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate pri… Dir 882 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-28901 A command injection vulnerability in the component /SetTriggerLEDBlink/Blink of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileg… Dir 882 Firmware No fix yet Fix from $2,3002022-05-10 CRITICAL 9.8 CVE-2022-28573EPSS 28% D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetNTPserverSeting. This vulnerability allows a… Dir 823 Pro Firmware No fix yet Fix from $2,3002022-05-02 CRITICAL 9.8 CVE-2022-28571EPSS 6% D-link 882 DIR882A1_FW130B06 was discovered to contain a command injection vulnerability in`/usr/bin/cli. Dir 882 Firmware No fix yet Fix from $2,3002022-05-02 CRITICAL 9.8 CVE-2021-46442EPSS 56% In the "webupg" binary of D-Link DIR-825 G1, attackers can bypass authentication through parameters "autoupgrade.asp", and perform functions such as … Dir 825 Firmware No fix yet Fix from $2,3002022-04-27 HIGH 8.8 CVE-2021-46441EPSS 33% In the "webupg" binary of D-Link DIR-825 G1, because of the lack of parameter verification, attackers can use "cmd" parameters to execute arbitrary s… Dir 825 Firmware No fix yet Fix from $1,9502022-04-27 HIGH 7.8 CVE-2022-1262 A command injection vulnerability in the protest binary allows an attacker with access to the remote command line interface to execute arbitrary comm… Dir 1360 Firmware No fix yet Fix from $1,9502022-04-11