Vulnerabilities > Dlink

DATE CVE VULNERABILITY TITLE RISK
2024-10-05 CVE-2024-9532 Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01
A vulnerability has been found in D-Link DIR-605L 2.13B01 BETA and classified as critical.
network
low complexity
dlink CWE-120
8.8
2024-10-04 CVE-2024-9514 Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01
A vulnerability was found in D-Link DIR-605L 2.13B01 BETA.
network
low complexity
dlink CWE-120
8.8
2024-10-04 CVE-2024-9515 Classic Buffer Overflow vulnerability in Dlink Dir-605L Firmware 2.13B01
A vulnerability was found in D-Link DIR-605L 2.13B01 BETA.
network
low complexity
dlink CWE-120
8.8
2024-09-19 CVE-2024-9004 OS Command Injection vulnerability in Dlink Dar-7000 Firmware
A vulnerability classified as critical has been found in D-Link DAR-7000 up to 20240912.
network
low complexity
dlink CWE-78
critical
9.8
2024-09-16 CVE-2024-45694 Stack-based Buffer Overflow vulnerability in Dlink Dir-X4860 Firmware and Dir-X5460 Firmware
The web service of certain models of D-Link wireless routers contains a Stack-based Buffer Overflow vulnerability, which allows unauthenticated remote attackers to exploit this vulnerability to execute arbitrary code on the device.
network
low complexity
dlink CWE-121
critical
9.8
2024-09-16 CVE-2024-45695 Out-of-bounds Write vulnerability in Dlink Dir-X4860 Firmware 1.00/1.04
The web service of certain models of D-Link wireless routers contains a Stack-based Buffer Overflow vulnerability, which allows unauthenticated remote attackers to exploit this vulnerability to execute arbitrary code on the device.
network
low complexity
dlink CWE-787
critical
9.8
2024-09-16 CVE-2024-45696 Hidden Functionality vulnerability in Dlink Covr-X1870 Firmware and Dir-X4860 Firmware
Certain models of D-Link wireless routers contain hidden functionality.
low complexity
dlink CWE-912
8.8
2024-09-16 CVE-2024-45697 Hidden Functionality vulnerability in Dlink Dir-X4860 Firmware 1.00/1.04
Certain models of D-Link wireless routers have a hidden functionality where the telnet service is enabled when the WAN port is plugged in.
network
low complexity
dlink CWE-912
critical
9.8
2024-09-16 CVE-2024-45698 Use of Hard-coded Credentials vulnerability in Dlink Dir-X4860 Firmware 1.00/1.04
Certain models of D-Link wireless routers do not properly validate user input in the telnet service, allowing unauthenticated remote attackers to use hard-coded credentials to log into telnet and inject arbitrary OS commands, which can then be executed on the device.
network
low complexity
dlink CWE-798
critical
9.8
2024-09-09 CVE-2024-44410 Command Injection vulnerability in Dlink Di-8300 Firmware 16.07.26A1
D-Link DI-8300 v16.07.26A1 is vulnerable to command injection via the upgrade_filter_asp function.
network
low complexity
dlink CWE-77
critical
9.8