dlink

1,699 tracked vulnerabilities.

CVE-2024-7828 HIGH
D-Link DNS/NAS Firmware - Buffer Overflow in photocenter_mgr.cgi cgi_set_cover Function
Aug 15, 2024
CVSS 8.8
EPSS 0.31
CVE-2024-41616 CRITICAL
D-Link DIR-300 REVA - Info Disclosure
Aug 06, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-7436 MEDIUM
D-Link DI-8100 16.07 - Remote Command Injection via msp_info.htm cmd Parameter
Aug 03, 2024
CVSS 6.3
EPSS 0.02
CVE-2024-7357 MEDIUM
D-Link DIR-600 Firmware < 2.18 - OS Command Injection via soapcgi_main Service Parameter
Aug 01, 2024
CVSS 6.3
EPSS 0.01
CVE-2024-41611 CRITICAL
D-Link DIR-860L REVA FIRMWARE PATCH 1.10..B04 - Use of Hard-coded Credentials in Telnet Service
Jul 30, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-41610 CRITICAL
D-Link DIR-820LW REVB Firmware 2.03.B01_TC - Use of Hard-coded Credentials in Telnet Service
Jul 30, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-38438 CRITICAL
D-Link - Auth Bypass
Jul 21, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-38437 CRITICAL
D-Link DSL-225 Firmware - Authentication Bypass via Alternate Path
Jul 21, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-39962 CRITICAL
D-Link DIR-823X AX3000 Dual-Band Gigabit Wireless Router v21_D240126 - Remote Code Execution via ntp_zone_val Parameter
Jul 19, 2024
CVSS 9.8
EPSS 0.10
CVE-2024-40505 CRITICAL
D-Link DAP-1650 <v.1.03 - Path Traversal
Jul 16, 2024
CVSS 9.3
EPSS 0.01
CVE-2024-39202 HIGH
D-Link DIR-823X AX3000 Firmware 240126 - Remote Code Execution via dhcpd_startip Parameter
Jul 08, 2024
CVSS 8.8
EPSS 0.02
CVE-2024-6525 LOW
D-Link DAR-7000 <20230922 - Deserialization
Jul 05, 2024
CVSS 2.7
EPSS 0.03
CVE-2024-36755 MEDIUM
D-Link DIR-1950 <v1.11B03 - Info Disclosure
Jun 27, 2024
CVSS 6.8
EPSS 0.00
CVE-2024-37630 HIGH
D-Link DIR-605L v2.13B01 - Use of Hard-coded Credentials in /etc/passwd
Jun 13, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-5299 HIGH
D-Link D-View 8 - Remote Code Execution via execMonitorScript Method
May 23, 2024
CVSS 8.8
EPSS 0.04
CVE-2024-5298 HIGH
D-Link D-View 8 - Remote Code Execution via queryDeviceCustomMonitorResult Method
May 23, 2024
CVSS 8.8
EPSS 0.04
CVE-2024-5297 HIGH
D-Link D-View 8 - Unauthenticated Remote Code Execution via executeWmicCmd
May 23, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-5296 CRITICAL
D-Link D-View 8 - Unauthenticated Authentication Bypass via Hard-coded Cryptographic Key
May 23, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-5295 HIGH
D-Link G416 Firmware < 1.09b01 - Unauthenticated OS Command Injection via flupl self Parameter
May 23, 2024
CVSS 8.8
EPSS 0.04
CVE-2024-5294 MEDIUM
D-Link DIR-3040 Firmware - Unauthenticated Denial-of-Service via Memory Leak in prog.cgi
May 23, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-5293 HIGH
D-Link DIR-2640 Firmware - Unauthenticated Stack-Based Buffer Overflow in prog.cgi
May 23, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-5292 HIGH
D-Link Network Assistant < 4.0.0.21 - Local Privilege Escalation via Uncontrolled Search Path
May 23, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-5291 HIGH
D-Link DIR-2150 Firmware - Unauthenticated Remote Code Execution via GetDeviceSettings SOAP API
May 23, 2024
CVSS 8.8
EPSS 0.05
CVE-2024-4965 MEDIUM
D-Link DAR-7000-40 - Os Command Injection
May 16, 2024
CVSS 6.3
EPSS 0.03
CVE-2024-4964 MEDIUM
D-Link DAR-7000-40 - Unrestricted Upload
May 16, 2024
CVSS 6.3
EPSS 0.01