Vulnerabilities > Dlink

DATE CVE VULNERABILITY TITLE RISK
2023-03-15 CVE-2023-25282 Out-of-bounds Write vulnerability in Dlink Dir-820L Firmware 1.06
A heap overflow vulnerability in D-Link DIR820LA1_FW106B02 allows attackers to cause a denial of service via the config.log_to_syslog and log_opt_dropPackets parameters to mydlink_api.ccp.
network
low complexity
dlink CWE-787
6.5
2023-03-13 CVE-2023-25279 OS Command Injection vulnerability in Dlink Dir-820L Firmware 105B03
OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload.
network
low complexity
dlink CWE-78
critical
9.8
2023-03-13 CVE-2023-24762 OS Command Injection vulnerability in Dlink Dir-867 Firmware 1.30B07
OS Command injection vulnerability in D-Link DIR-867 DIR_867_FW1.30B07 allows attackers to execute arbitrary commands via a crafted LocalIPAddress parameter for the SetVirtualServerSettings to HNAP1.
network
low complexity
dlink CWE-78
critical
9.8
2023-03-13 CVE-2023-25283 Out-of-bounds Write vulnerability in Dlink Dir-820L Firmware 1.06B02
A stack overflow vulnerability in D-Link DIR820LA1_FW106B02 allows attackers to cause a denial of service via the reserveDHCP_HostName_1.1.1.0 parameter to lan.asp.
network
low complexity
dlink CWE-787
7.5
2023-02-11 CVE-2023-0127 Command Injection vulnerability in Dlink Dwl-2600Ap Firmware 4.2.0.17
A command injection vulnerability in the firmware_update command, in the device's restricted telnet interface, allows an authenticated attacker to execute arbitrary commands as root.
local
low complexity
dlink CWE-77
7.8
2023-02-10 CVE-2023-24343 Out-of-bounds Write vulnerability in Dlink Dir-605L Firmware 2.13B01
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSchedule.
network
low complexity
dlink CWE-787
8.8
2023-02-10 CVE-2023-24344 Out-of-bounds Write vulnerability in Dlink Dir-605L Firmware 2.13B01
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /goform/formWlanGuestSetup.
network
low complexity
dlink CWE-787
8.8
2023-02-10 CVE-2023-24345 Out-of-bounds Write vulnerability in Dlink Dir-605L Firmware 2.13B01
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSetWanDhcpplus.
network
low complexity
dlink CWE-787
8.8
2023-02-10 CVE-2023-24346 Out-of-bounds Write vulnerability in Dlink Dir-605L Firmware 2.13B01
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the wan_connected parameter at /goform/formEasySetupWizard3.
network
low complexity
dlink CWE-787
8.8
2023-02-10 CVE-2023-24347 Out-of-bounds Write vulnerability in Dlink Dir-605L Firmware 2.13B01
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /goform/formSetWanDhcpplus.
network
low complexity
dlink CWE-787
8.8