Vulnerabilities > Dlink > DIR 882 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-11-22 CVE-2022-44807 Out-of-bounds Write vulnerability in Dlink Dir-882 Firmware 1.10B02/1.20B06
D-Link DIR-882 1.10B02 and 1.20B06 is vulnerable to Buffer Overflow via webGetVarString.
network
low complexity
dlink CWE-787
critical
9.8
2022-11-22 CVE-2022-44806 Out-of-bounds Write vulnerability in Dlink Dir-882 Firmware 1.10B02/1.20B06
D-Link DIR-882 1.10B02 and 1.20B06 is vulnerable to Buffer Overflow.
network
low complexity
dlink CWE-787
critical
9.8
2022-11-22 CVE-2022-44804 Out-of-bounds Write vulnerability in Dlink Dir-882 Firmware 1.10B02/1.20B06
D-Link DIR-882 1.10B02 and1.20B06 is vulnerable to Buffer Overflow via the websRedirect function.
network
low complexity
dlink CWE-787
critical
9.8
2022-05-10 CVE-2022-28901 OS Command Injection vulnerability in Dlink Dir-882 Firmware 1.30B06
A command injection vulnerability in the component /SetTriggerLEDBlink/Blink of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileges to root via a crafted payload.
network
low complexity
dlink CWE-78
critical
9.8
2022-05-10 CVE-2022-28896 OS Command Injection vulnerability in Dlink Dir-882 Firmware 1.30B06
A command injection vulnerability in the component /setnetworksettings/SubnetMask of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileges to root via a crafted payload.
network
low complexity
dlink CWE-78
critical
9.8
2022-05-10 CVE-2022-28895 OS Command Injection vulnerability in Dlink Dir-882 Firmware 1.30B06
A command injection vulnerability in the component /setnetworksettings/IPAddress of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileges to root via a crafted payload.
network
low complexity
dlink CWE-78
critical
9.8
2022-05-02 CVE-2022-28571 OS Command Injection vulnerability in Dlink Dir-882 Firmware 1.30B06
D-link 882 DIR882A1_FW130B06 was discovered to contain a command injection vulnerability in`/usr/bin/cli.
network
low complexity
dlink CWE-78
critical
9.8
2022-02-04 CVE-2021-45998 Command Injection vulnerability in Dlink Dir-882 Firmware
D-Link device DIR_882 DIR_882_FW1.30B06_Hotfix_02 was discovered to contain a command injection vulnerability in the LocalIPAddress parameter.
network
low complexity
dlink CWE-77
critical
9.8
2022-02-04 CVE-2021-44881 Command Injection vulnerability in Dlink Dir-882 Firmware
D-Link device DIR_882 DIR_882_FW1.30B06_Hotfix_02 was discovered to contain a command injection vulnerability in the twsystem function.
network
low complexity
dlink CWE-77
critical
9.8
2022-02-04 CVE-2021-44880 Command Injection vulnerability in Dlink Dir-878 Firmware and Dir-882 Firmware
D-Link devices DIR_878 DIR_878_FW1.30B08_Hotfix_02 and DIR_882 DIR_882_FW1.30B06_Hotfix_02 were discovered to contain a command injection vulnerability in the system function.
network
low complexity
dlink CWE-77
critical
9.8