Vulnerabilities > D Link > DI 604

DATE CVE VULNERABILITY TITLE RISK
2010-06-15 CVE-2010-2293 Improper Input Validation vulnerability in D-Link Di-604
The Ping tools web interface in Dlink Di-604 router allows remote authenticated users to cause a denial of service via a large "ip textfield" size.
network
low complexity
d-link CWE-20
6.8
2010-06-15 CVE-2010-2292 Cross-Site Scripting vulnerability in D-Link Di-604
Cross-site scripting (XSS) vulnerability in the Ping tools web interface in Dlink Di-604 router allows remote attackers to inject arbitrary web script or HTML via the IP field.
network
d-link CWE-79
4.3
2008-03-10 CVE-2008-1258 Cross-Site Scripting vulnerability in D-Link Di-604
Cross-site scripting (XSS) vulnerability in prim.htm on the D-Link DI-604 router allows remote attackers to inject arbitrary web script or HTML via the rf parameter.
network
d-link CWE-79
4.3
2004-08-06 CVE-2004-0661 Unspecified vulnerability in D-Link Di-604, Di-614+ and Di-624
Integer signedness error in D-Link AirPlus DI-614+ running firmware 2.30 and earlier allows remote attackers to cause a denial of service (IP lease depletion) via a DHCP request with the LEASETIME option set to -1, which makes the DHCP lease valid for thirteen or more years.
network
low complexity
d-link
5.0