Vulnerabilities > Dlink > DAP 1880Ac Firmware

DATE CVE VULNERABILITY TITLE RISK
2021-04-26 CVE-2021-20694 Unspecified vulnerability in Dlink Dap-1880Ac Firmware 1.21
Improper access control vulnerability in DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to bypass access restriction and to start a telnet service via unspecified vectors.
network
low complexity
dlink
6.5
2021-04-26 CVE-2021-20695 Improper Certificate Validation vulnerability in Dlink Dap-1880Ac Firmware 1.21
Improper following of a certificate's chain of trust vulnerability in DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to gain root privileges via unspecified vectors.
network
low complexity
dlink CWE-295
critical
9.0
2021-04-26 CVE-2021-20697 Missing Authentication for Critical Function vulnerability in Dlink Dap-1880Ac Firmware
Missing authentication for critical function in DAP-1880AC firmware version 1.21 and earlier allows a remote attacker to login to the device as an authenticated user without the access privilege via unspecified vectors.
network
low complexity
dlink CWE-306
7.5
2021-04-26 CVE-2021-20696 OS Command Injection vulnerability in Dlink Dap-1880Ac Firmware
DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to execute arbitrary OS commands by sending a specially crafted request to a specific CGI program.
network
low complexity
dlink CWE-78
critical
9.0