Vulnerabilities > Dlink > DIR 823G Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-10-05 CVE-2023-44838 Classic Buffer Overflow vulnerability in Dlink Dir-823G Firmware 1.0.2B05
D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the TXPower parameter in the SetWLanRadioSettings function.
network
low complexity
dlink CWE-120
7.5
2023-10-05 CVE-2023-44839 Classic Buffer Overflow vulnerability in Dlink Dir-823G Firmware 1.0.2B05
D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the Encryption parameter in the SetWLanRadioSecurity function.
network
low complexity
dlink CWE-120
7.5
2023-09-21 CVE-2023-43235 Out-of-bounds Write vulnerability in Dlink Dir-823G Firmware 1.0.2B05
D-Link DIR-823G v1.0.2B05 was discovered to contain a stack overflow via parameter StartTime and EndTime in SetWifiDownSettings.
network
low complexity
dlink CWE-787
critical
9.8
2023-09-21 CVE-2023-43241 Out-of-bounds Write vulnerability in Dlink Dir-823G Firmware 1.0.2B05
D-Link DIR-823G v1.0.2B05 was discovered to contain a stack overflow via parameter TXPower and GuardInt in SetWLanRadioSecurity.
network
low complexity
dlink CWE-787
critical
9.8
2023-06-29 CVE-2023-26612 Classic Buffer Overflow vulnerability in Dlink Dir-823G Firmware 1.02B05
D-Link DIR-823G firmware version 1.02B05 has a buffer overflow vulnerability, which originates from the HostName field in SetParentsControlInfo.
network
low complexity
dlink CWE-120
critical
9.8
2023-06-29 CVE-2023-26613 OS Command Injection vulnerability in Dlink Dir-823G Firmware 1.02B05
An OS command injection vulnerability in D-Link DIR-823G firmware version 1.02B05 allows unauthorized attackers to execute arbitrary operating system commands via a crafted GET request to EXCU_SHELL.
network
low complexity
dlink CWE-78
critical
9.8
2023-06-29 CVE-2023-26616 Classic Buffer Overflow vulnerability in Dlink Dir-823G Firmware 1.02B05
D-Link DIR-823G firmware version 1.02B05 has a buffer overflow vulnerability, which originates from the URL field in SetParentsControlInfo.
network
low complexity
dlink CWE-120
critical
9.8
2023-06-28 CVE-2023-26615 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Dlink Dir-823G Firmware 1.02B05
D-Link DIR-823G firmware version 1.02B05 has a password reset vulnerability, which originates from the SetMultipleActions API, allowing unauthorized attackers to reset the WEB page management password.
network
low complexity
dlink CWE-640
7.5
2023-04-17 CVE-2023-29665 Out-of-bounds Write vulnerability in Dlink Dir-823G Firmware 1.0.2B05
D-Link DIR823G_V1.0.2B05 was discovered to contain a stack overflow via the NewPassword parameters in SetPasswdSettings.
network
low complexity
dlink CWE-787
critical
9.8
2022-11-22 CVE-2022-44201 OS Command Injection vulnerability in Dlink Dir-823G Firmware 1.02B05
D-Link DIR823G 1.02B05 is vulnerable to Commad Injection.
network
low complexity
dlink CWE-78
critical
9.8