Skip to main content

Vendor archive

d-link CVEs

Beta · best-effort

113 CVEs tagged to vendor d-link40 Critical, 36 High, 36 Medium, 1 Low, 0 Unrated.

CVE-2021-26709

Published Apr 7, 2021

D-Link DSL-320B-D1 devices through EU_1.25 are prone to multiple Stack-Based Buffer Overflows that allow unauthenticated remote attackers to take over a device via the login.xgi u…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-6258

Published Aug 18, 2020

D-Link DIR-822 Rev.Bx devices with firmware v.202KRb06 and older allow a buffer overflow via long MacAddress data in a /HNAP1/SetClientInfo HNAP protocol message, which is mishand…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2013-6811

Published Nov 22, 2019

Multiple cross-site request forgery (CSRF) vulnerabilities in the D-Link DSL-6740U gateway (Rev. H1) allow remote attackers to hijack the authentication of administrators for requ…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-19990

Published May 13, 2019

In the /HNAP1/SetWiFiVerifyAlpha message, the WPSPIN parameter is vulnerable, and the vulnerability affects D-Link DIR-822 B1 202KRb06 devices. In the SetWiFiVerifyAlpha.php sourc…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-19988

Published May 13, 2019

In the /HNAP1/SetClientInfoDemo message, the AudioMute and AudioEnable parameters are vulnerable, and the vulnerabilities affect D-Link DIR-868L Rev.B 2.05B02 devices. In the SetC…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-19987

Published May 13, 2019

D-Link DIR-822 Rev.B 202KRb06, DIR-822 Rev.C 3.10B06, DIR-860L Rev.B 2.03.B03, DIR-868L Rev.B 2.05B02, DIR-880L Rev.A 1.20B01_01_i3se_BETA, and DIR-890L Rev.A 1.21B02_BETA devices…

CVSS 9.8 · Critical

CVE-2018-19300

Published Apr 11, 2019

On D-Link DAP-1530 (A1) before firmware version 1.06b01, DAP-1610 (A1) before firmware version 1.06b01, DWR-111 (A1) before firmware version 1.02v02, DWR-116 (A1) before firmware…

CVSS 9.8 · Critical

CVE-2019-7297

Published Jan 31, 2019

An issue was discovered on D-Link DIR-823G devices with firmware through 1.02B03. A command Injection vulnerability allows attackers to execute arbitrary OS commands via shell met…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-18442

Published Dec 20, 2018

D-Link DCS-825L devices with firmware 1.08 do not employ a suitable mechanism to prevent denial-of-service (DoS) attacks. An attacker can harm the device availability (i.e., live-…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 113 CVEsPage 1 of 5