VYPR

Vendor CVEs

Dlink

All CVEs

1,936 total · sorted by risk
  • CVE-2024-22916CriJan 16, 2024
    risk 0.64cvss 9.8epss 0.01

    In D-LINK Go-RT-AC750 v101b03, the sprintf function in the sub_40E700 function within the cgibin is susceptible to stack overflow.

  • CVE-2023-51987CriJan 11, 2024
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-822+ V1.0.2 contains a login bypass in the HNAP1 interface, which allows attackers to log in to administrator accounts with empty passwords.

  • CVE-2023-51984CriJan 11, 2024
    risk 0.64cvss 9.8epss 0.02

    D-Link DIR-822+ V1.0.2 was found to contain a command injection in SetStaticRouteSettings function. allows remote attackers to execute arbitrary commands via shell.

  • CVE-2023-49004CriDec 19, 2023
    risk 0.64cvss 9.8epss 0.02

    An issue in D-Link DIR-850L v.B1_FW223WWb01 allows a remote attacker to execute arbitrary code via a crafted script to the en parameter.

  • CVE-2023-48842CriDec 1, 2023
    risk 0.64cvss 9.8epss 0.04

    D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at hedwig.cgi.

  • CVE-2023-42406CriOct 26, 2023
    risk 0.64cvss 9.8epss 0.02

    SQL injection vulnerability in D-Link Online behavior audit gateway DAR-7000 V31R02B1413C allows a remote attacker to obtain sensitive information and execute arbitrary code via the editrole.php component.

  • CVE-2023-44694CriOct 17, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link Online behavior audit gateway DAR-7000 V31R02B1413C is vulnerable to SQL Injection via /log/mailrecvview.php.

  • CVE-2023-45580CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and…

  • CVE-2023-45579CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and…

  • CVE-2023-45578CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and…

  • CVE-2023-45577CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Stack Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1…

  • CVE-2023-45576CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and…

  • CVE-2023-45575CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Stack Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1…

  • CVE-2023-45574CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.02

    Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and…

  • CVE-2023-45573CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and…

  • CVE-2023-45572CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and…

  • CVE-2023-44809CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link device DIR-820L 1.05B03 is vulnerable to Insecure Permissions.

  • CVE-2023-44808CriOct 16, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the sub_4507CC function.

  • CVE-2023-44807CriOct 6, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the cancelPing function.

  • CVE-2023-43869CriSep 28, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-619L B1 2.02 is vulnerable to Buffer Overflow via formSetWAN_Wizard56 function.

  • CVE-2023-43130CriSep 22, 2023
    risk 0.64cvss 9.8epss 0.03

    D-LINK DIR-806 1200M11AC wireless router DIR806A1_FW100CNb11 is vulnerable to command injection.

  • CVE-2023-43129CriSep 22, 2023
    risk 0.64cvss 9.8epss 0.03

    D-LINK DIR-806 1200M11AC wireless router DIR806A1_FW100CNb11 is vulnerable to command injection due to lax filtering of REMOTE_PORT parameters.

  • CVE-2023-43128CriSep 21, 2023
    risk 0.64cvss 9.8epss 0.03

    D-LINK DIR-806 1200M11AC wireless router DIR806A1_FW100CNb11 is vulnerable to command injection due to lax filtering of HTTP_ST parameters.

  • CVE-2023-43242CriSep 21, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-816 A2 v1.10CNB05 was discovered to contain a stack overflow via parameter removeRuleList in form2IPQoSTcDel.

  • CVE-2023-43241CriSep 21, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-823G v1.0.2B05 was discovered to contain a stack overflow via parameter TXPower and GuardInt in SetWLanRadioSecurity.

  • CVE-2023-43238CriSep 21, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-816 A2 v1.10CNB05 was discovered to contain a stack overflow via parameter nvmacaddr in form2Dhcpip.cgi.

  • CVE-2023-43236CriSep 21, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-816 A2 v1.10CNB05 was discovered to contain a stack overflow via parameter statuscheckpppoeuser in dir_setWanWifi.

  • CVE-2023-43235CriSep 21, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-823G v1.0.2B05 was discovered to contain a stack overflow via parameter StartTime and EndTime in SetWifiDownSettings.

  • CVE-2023-43207CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.03

    D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function config_upload_handler. This vulnerability allows attackers to execute arbitrary commands via the configRestore parameter.

  • CVE-2023-43206CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.03

    D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function web_cert_download_handler. This vulnerability allows attackers to execute arbitrary commands via the certDownload parameter.

  • CVE-2023-43204CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.03

    D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function sub_2EF50. This vulnerability allows attackers to execute arbitrary commands via the manual-time-string parameter.

  • CVE-2023-43203CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.01

    D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a stack overflow vulnerability in the function update_users.

  • CVE-2023-43202CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.03

    D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function pcap_download_handler. This vulnerability allows attackers to execute arbitrary commands via the update.device.packet-capture.tftp-file-name parameter.

  • CVE-2023-43201CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the hi_up parameter in the qos_ext.asp function.

  • CVE-2023-43200CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the id parameter in the yyxz.data function.

  • CVE-2023-43199CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the prev parameter in the H5/login.cgi function.

  • CVE-2023-43198CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the popupId parameter in the H5/hi_block.asp function.

  • CVE-2023-43197CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the fn parameter in the tgfile.asp function.

  • CVE-2023-43196CriSep 20, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the zn_jb parameter in the arp_sys.asp function.

  • CVE-2023-39638CriSep 14, 2023
    risk 0.64cvss 9.8epss 0.04

    D-LINK DIR-859 A1 1.05 and A1 1.06B01 Beta01 was discovered to contain a command injection vulnerability via the lxmldbc_system function at /htdocs/cgibin.

  • CVE-2023-39637CriSep 12, 2023
    risk 0.64cvss 9.8epss 0.02

    D-Link DIR-816 A2 1.10 B05 was discovered to contain a command injection vulnerability via the component /goform/Diagnosis.

  • CVE-2020-19320CriSep 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer overflow vulnerability in DLINK 619L version B 2.06beta via the curTime parameter on login.

  • CVE-2020-19319CriSep 11, 2023
    risk 0.64cvss 9.8epss 0.01

    Buffer overflow vulnerability in DLINK 619L version B 2.06beta via the FILECODE parameter on login.

  • CVE-2023-39749CriAug 21, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DAP-2660 v1.13 was discovered to contain a buffer overflow via the component /adv_resource. This vulnerability is exploited via a crafted GET request.

  • CVE-2023-39674CriAug 18, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-880 A1_FW107WWb08 was discovered to contain a buffer overflow via the function fgets.

  • CVE-2023-39671CriAug 18, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-880 A1_FW107WWb08 was discovered to contain a buffer overflow via the function FUN_0001be68.

  • CVE-2023-39668CriAug 18, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-868L fw_revA_1-12_eu_multi_20170316 was discovered to contain a buffer overflow via the param_2 parameter in the inet_ntoa() function.

  • CVE-2023-39667CriAug 18, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-868L fw_revA_1-12_eu_multi_20170316 was discovered to contain a buffer overflow via the param_2 parameter in the FUN_0000acb4 function.

  • CVE-2023-39666CriAug 18, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-842 fw_revA_1-02_eu_multi_20151008 was discovered to contain multiple buffer overflows in the fgets function via the acStack_120 and acStack_220 parameters.

  • CVE-2023-39665CriAug 18, 2023
    risk 0.64cvss 9.8epss 0.01

    D-Link DIR-868L fw_revA_1-12_eu_multi_20170316 was discovered to contain a buffer overflow via the acStack_50 parameter.

Page 6 of 39