Skip to main content

Vendor/product archive

dlink / dir-882 CVEs

Beta · best-effort

31 CVEs tagged to dlink / dir-88210 Critical, 19 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2026-5844

Published Apr 9, 2026

A vulnerability was found in D-Link DIR-882 1.01B02. Impacted is the function sprintf of the file prog.cgi of the component HNAP1 SetNetworkSettings Handler. The manipulation of t…

CVSS 7.3 · High
evidence mentions
5
Buzz score
29.4
Vendor/product tagsBeta · best-effort

CVE-2025-60701

Published Nov 13, 2025

A command injection vulnerability exists in the D-Link DIR-882 Router firmware DIR882A1_FW102B02 within the `prog.cgi` and `rc` binaries. The `sub_433188` function in `prog.cgi` s…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-60700

Published Nov 13, 2025

A command injection vulnerability exists in the D-Link DIR-882 Router firmware DIR882A1_FW102B02 within the `prog.cgi` and `librcm.so` binaries. The `sub_4455BC` function in `prog…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-60698

Published Nov 13, 2025

A command injection vulnerability exists in the D-Link DIR-882 Router firmware DIR882A1_FW102B02 within the `prog.cgi` and `rc` binaries. The `sub_432F60` function in `prog.cgi` s…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2025-60697

Published Nov 13, 2025

A command injection vulnerability exists in the D-Link DIR-882 Router firmware DIR882A1_FW102B02 within the `prog.cgi` and `rc` binaries. The `sub_4438A4` function in `prog.cgi` s…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2023-24330

Published Feb 21, 2024

Command Injection vulnerability in D-Link Dir 882 with firmware version DIR882A1_FW130B06 allows attackers to run arbitrary commands via crafted POST request to /HNAP1/.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-26925

Published Mar 31, 2023

An information disclosure vulnerability exists in the Syslog functionality of D-LINK DIR-882 1.30. A specially crafted network request can lead to the disclosure of sensitive info…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-28901

Published May 10, 2022

A command injection vulnerability in the component /SetTriggerLEDBlink/Blink of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileges to root via a crafted paylo…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-28896

Published May 10, 2022

A command injection vulnerability in the component /setnetworksettings/SubnetMask of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileges to root via a crafted…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-28895

Published May 10, 2022

A command injection vulnerability in the component /setnetworksettings/IPAddress of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileges to root via a crafted p…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-25 of 31 CVEsPage 1 of 2