Vulnerabilities > Dlink > DAP 1880Ac Firmware

DATE CVE VULNERABILITY TITLE RISK
2021-04-26 CVE-2021-20694 Unspecified vulnerability in Dlink Dap-1880Ac Firmware 1.21
Improper access control vulnerability in DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to bypass access restriction and to start a telnet service via unspecified vectors.
network
low complexity
dlink
8.8
2021-04-26 CVE-2021-20695 Improper Certificate Validation vulnerability in Dlink Dap-1880Ac Firmware 1.21
Improper following of a certificate's chain of trust vulnerability in DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to gain root privileges via unspecified vectors.
network
low complexity
dlink CWE-295
8.8
2021-04-26 CVE-2021-20697 Missing Authentication for Critical Function vulnerability in Dlink Dap-1880Ac Firmware 1.21
Missing authentication for critical function in DAP-1880AC firmware version 1.21 and earlier allows a remote attacker to login to the device as an authenticated user without the access privilege via unspecified vectors.
network
low complexity
dlink CWE-306
critical
9.8
2021-04-26 CVE-2021-20696 OS Command Injection vulnerability in Dlink Dap-1880Ac Firmware 1.21
DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to execute arbitrary OS commands by sending a specially crafted request to a specific CGI program.
network
low complexity
dlink CWE-78
8.8