VYPR

Dir 412 Firmware

by Dlink

CVEs (3)

  • CVE-2018-25115CriAug 27, 2025
    risk 0.64cvss 9.8epss 0.09

    Multiple D-Link DIR-series routers, including DIR-110, DIR-412, DIR-600, DIR-610, DIR-615, DIR-645, and DIR-815 firmware version 1.03, contain a vulnerability in the service.cgi endpoint that allows remote attackers to execute arbitrary system commands without authentication.…

  • CVE-2019-17512CriOct 16, 2019
    risk 0.59cvss 9.1epss 0.02

    There are some web interfaces without authentication requirements on D-Link DIR-412 A1-1.14WW routers. An attacker can clear the router's log file via act=clear&logtype=sysact to log_clear.php, which could be used to erase attack traces.

  • CVE-2019-17511HigOct 14, 2019
    risk 0.49cvss 7.5epss 0.02

    There are some web interfaces without authentication requirements on D-Link DIR-412 A1-1.14WW routers. An attacker can get the router's log file via log_get.php, which could be used to discover the intranet network structure.