Skip to main content

Vendor/product archive

dlink / dir-645 CVEs

Beta · best-effort

12 CVEs tagged to dlink / dir-6457 Critical, 1 High, 2 Medium, 2 Low, 0 Unrated.

CVE-2025-10689

Published Sep 18, 2025

A vulnerability was identified in D-Link DIR-645 105B01. This issue affects the function soapcgi_main of the file /soap.cgi. Such manipulation of the argument service leads to com…

CVSS 2.1 · Low
evidence mentions
5
Buzz score
33.9
Public PoC observed
Vendor/product tagsBeta · best-effort

CVE-2018-25115

Published Aug 27, 2025

Multiple D-Link DIR-series routers, including DIR-110, DIR-412, DIR-600, DIR-610, DIR-615, DIR-645, and DIR-815 firmware version 1.03, contain a vulnerability in the service.cgi e…

CVSS 10.0 · Critical

CVE-2025-7192

Published Jul 8, 2025

A vulnerability was found in D-Link DIR-645 up to 1.05B01 and classified as critical. This issue affects the function ssdpcgi_main of the file /htdocs/cgibin of the component ssdp…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-36089

Published Jul 31, 2023

Authentication Bypass vulnerability in D-Link DIR-645 firmware version 1.03 allows remote attackers to gain escalated privileges via function phpcgi_main in cgibin. NOTE: This vul…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-43722

Published Mar 31, 2022

D-Link DIR-645 1.03 A1 is vulnerable to Buffer Overflow. The hnap_main function in the cgibin handler uses sprintf to format the soapaction header onto the stack and has no limit…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-25786

Published Sep 19, 2020

webinc/js/info.php on D-Link DIR-816L 2.06.B09_BETA and DIR-803 1.04.B02 devices allows XSS via the HTTP Referer header. NOTE: This vulnerability only affects products that are no…

CVSS 6.1 · Medium

CVE-2013-7471

Published Jun 11, 2019

An issue was discovered in soap.cgi?service=WANIPConn1 on D-Link DIR-845 before v1.02b03, DIR-600 before v2.17b01, DIR-645 before v1.04b11, DIR-300 rev. B, and DIR-865 devices. Th…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2015-2052

Published Feb 23, 2015

Stack-based buffer overflow in the DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remote attackers to execute arbitrary code via a long string in a…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-2051

Published Feb 23, 2015

The D-Link DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remote attackers to execute arbitrary commands via a GetDeviceSettings action to the HNAP…

CVSS 8.8 · High
evidence mentions
16
Buzz score
69.3
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2013-7389

Published Jul 7, 2014

Multiple cross-site scripting (XSS) vulnerabilities in D-Link DIR-645 Router (Rev. A1) with firmware before 1.04B11 allow remote attackers to inject arbitrary web script or HTML v…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-12 of 12 CVEsPage 1 of 1