Vulnerabilities > Dlink

DATE CVE VULNERABILITY TITLE RISK
2023-09-20 CVE-2023-43201 Out-of-bounds Write vulnerability in Dlink Di-7200G Firmware 21.04.09E1
D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the hi_up parameter in the qos_ext.asp function.
network
low complexity
dlink CWE-787
critical
9.8
2023-09-20 CVE-2023-43202 Command Injection vulnerability in Dlink Dwl-6610Ap Firmware 4.3.0.8B003C
D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function pcap_download_handler.
network
low complexity
dlink CWE-77
critical
9.8
2023-09-20 CVE-2023-43203 Out-of-bounds Write vulnerability in Dlink Dwl-6610Ap Firmware 4.3.0.8B003C
D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a stack overflow vulnerability in the function update_users.
network
low complexity
dlink CWE-787
critical
9.8
2023-09-20 CVE-2023-43204 Command Injection vulnerability in Dlink Dwl-6610Ap Firmware 4.3.0.8B003C
D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function sub_2EF50.
network
low complexity
dlink CWE-77
critical
9.8
2023-09-20 CVE-2023-43206 Command Injection vulnerability in Dlink Dwl-6610Ap Firmware 4.3.0.8B003C
D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function web_cert_download_handler.
network
low complexity
dlink CWE-77
critical
9.8
2023-09-20 CVE-2023-43207 Command Injection vulnerability in Dlink Dwl-6610Ap Firmware 4.3.0.8B003C
D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function config_upload_handler.
network
low complexity
dlink CWE-77
critical
9.8
2023-09-14 CVE-2023-39638 Command Injection vulnerability in Dlink Dir-859 A1 Firmware 1.05/1.06
D-LINK DIR-859 A1 1.05 and A1 1.06B01 Beta01 was discovered to contain a command injection vulnerability via the lxmldbc_system function at /htdocs/cgibin.
network
low complexity
dlink CWE-77
critical
9.8
2023-09-12 CVE-2023-39637 Command Injection vulnerability in Dlink Dir-816 Firmware 1.10B05
D-Link DIR-816 A2 1.10 B05 was discovered to contain a command injection vulnerability via the component /goform/Diagnosis.
network
low complexity
dlink CWE-77
critical
9.8
2023-09-11 CVE-2020-19319 Classic Buffer Overflow vulnerability in Dlink Dir-619L Firmware 2.06
Buffer overflow vulnerability in DLINK 619L version B 2.06beta via the FILECODE parameter on login.
network
low complexity
dlink CWE-120
critical
9.8
2023-09-11 CVE-2020-19320 Classic Buffer Overflow vulnerability in Dlink Dir-619L Firmware 2.06
Buffer overflow vulnerability in DLINK 619L version B 2.06beta via the curTime parameter on login.
network
low complexity
dlink CWE-120
critical
9.8