Skip to main content

Vendor/product archive

dlink / dir-815 CVEs

Beta · best-effort

15 CVEs tagged to dlink / dir-8157 Critical, 4 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2018-25115

Published Aug 27, 2025

Multiple D-Link DIR-series routers, including DIR-110, DIR-412, DIR-600, DIR-610, DIR-615, DIR-645, and DIR-815 firmware version 1.03, contain a vulnerability in the service.cgi e…

CVSS 10.0 · Critical

CVE-2023-51123

Published Jan 10, 2024

An issue discovered in D-Link dir815 v.1.01SSb08.bin allows a remote attacker to execute arbitrary code via a crafted POST request to the service parameter in the soapcgi_main fun…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-25786

Published Sep 19, 2020

webinc/js/info.php on D-Link DIR-816L 2.06.B09_BETA and DIR-803 1.04.B02 devices allows XSS via the HTTP Referer header. NOTE: This vulnerability only affects products that are no…

CVSS 6.1 · Medium

CVE-2018-10108

Published Apr 16, 2018

D-Link DIR-815 REV. B (with firmware through DIR-815_REVB_FIRMWARE_PATCH_2.07.B01) devices have XSS in the Treturn parameter to /htdocs/webinc/js/bsc_sms_inbox.php.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-10106

Published Apr 16, 2018

D-Link DIR-815 REV. B (with firmware through DIR-815_REVB_FIRMWARE_PATCH_2.07.B01) devices have permission bypass and information disclosure in /htdocs/web/getcfg.php, as demonstr…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-0153

Published Apr 12, 2018

D-Link DIR-815 devices with firmware before 2.07.B01 allow remote attackers to obtain sensitive information by leveraging cleartext storage of the wireless key.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-0152

Published Apr 12, 2018

D-Link DIR-815 devices with firmware before 2.07.B01 allow remote attackers to obtain sensitive information by leveraging cleartext storage of the administrative password.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-0151

Published Apr 12, 2018

Cross-site request forgery (CSRF) vulnerability in D-Link DIR-815 devices with firmware before 2.07.B01 allows remote attackers to hijack the authentication of arbitrary users for…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2015-0150

Published Apr 12, 2018

The remote administration UI in D-Link DIR-815 devices with firmware before 2.07.B01 allows remote attackers to bypass intended access restrictions via unspecified vectors.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-8888

Published Apr 12, 2018

The remote administration interface in D-Link DIR-815 devices with firmware before 2.03.B02 allows remote attackers to execute arbitrary commands via vectors related to an "HTTP c…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1