VYPR

Dap 1880ac Firmware

by Dlink

CVEs (4)

  • CVE-2021-20697CriApr 26, 2021
    risk 0.64cvss 9.8epss 0.02

    Missing authentication for critical function in DAP-1880AC firmware version 1.21 and earlier allows a remote attacker to login to the device as an authenticated user without the access privilege via unspecified vectors.

  • CVE-2021-20696HigApr 26, 2021
    risk 0.57cvss 8.8epss 0.02

    DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to execute arbitrary OS commands by sending a specially crafted request to a specific CGI program.

  • CVE-2021-20695HigApr 26, 2021
    risk 0.57cvss 8.8epss 0.01

    Improper following of a certificate's chain of trust vulnerability in DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to gain root privileges via unspecified vectors.

  • CVE-2021-20694HigApr 26, 2021
    risk 0.57cvss 8.8epss 0.02

    Improper access control vulnerability in DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to bypass access restriction and to start a telnet service via unspecified vectors.