Vulnerabilities > D Link

DATE CVE VULNERABILITY TITLE RISK
2022-12-02 CVE-2022-44929 Unspecified vulnerability in D-Link Dvg-G5402Sp Firmware Ge1.03
An access control issue in D-Link DVG-G5402SP GE_1.03 allows unauthenticated attackers to escalate privileges via arbitrarily editing VoIP SIB profiles.
network
low complexity
d-link
critical
9.8
2022-12-02 CVE-2022-44928 OS Command Injection vulnerability in D-Link Dvg-G5402Sp Firmware Ge1.03
D-Link DVG-G5402SP GE_1.03 was discovered to contain a command injection vulnerability via the Maintenance function.
network
low complexity
d-link CWE-78
critical
9.8
2021-10-31 CVE-2021-33259 Missing Authentication for Critical Function vulnerability in D-Link Dir-868Lw Firmware 1.12B
Several web interfaces in D-Link DIR-868LW 1.12b have no authentication requirements for access, allowing for attackers to obtain users' DNS query history.
network
low complexity
d-link CWE-306
5.3
2021-09-24 CVE-2021-41503 Improper Authentication vulnerability in multiple products
** UNSUPPORTED WHEN ASSIGNED ** DCS-5000L v1.05 and DCS-932L v2.17 and older are affecged by Incorrect Acess Control.
low complexity
dlink d-link CWE-287
8.0
2021-04-14 CVE-2021-27250 External Control of File Name or Path vulnerability in D-Link Dap-2020 Firmware 1.01
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DAP-2020 v1.01rc001 Wi-Fi access points.
low complexity
d-link CWE-73
6.5
2021-04-14 CVE-2021-27249 OS Command Injection vulnerability in D-Link Dap-2020 Firmware 1.01
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2020 v1.01rc001 Wi-Fi access points.
low complexity
d-link CWE-78
8.8
2021-04-14 CVE-2021-27248 Stack-based Buffer Overflow vulnerability in D-Link Dap-2020 Firmware 1.01
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2020 v1.01rc001 Wi-Fi access points.
low complexity
d-link CWE-121
8.8
2020-09-02 CVE-2020-25078 An issue was discovered on D-Link DCS-2530L before 1.06.01 Hotfix and DCS-2670L through 2.02 devices.
network
low complexity
dlink d-link
7.5
2020-08-18 CVE-2019-6258 Classic Buffer Overflow vulnerability in D-Link Dir-822 Firmware
D-Link DIR-822 Rev.Bx devices with firmware v.202KRb06 and older allow a buffer overflow via long MacAddress data in a /HNAP1/SetClientInfo HNAP protocol message, which is mishandled in /usr/sbin/udhcpd during reading of the /var/servd/LAN-1-udhcpd.conf file.
network
low complexity
d-link CWE-120
critical
9.8
2020-07-23 CVE-2020-15633 Authentication Bypass Using an Alternate Path or Channel vulnerability in D-Link products
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.20B10_BETA.
low complexity
d-link CWE-288
8.8