Vulnerabilities > Dlink > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-12-23 | CVE-2022-46563 | Out-of-bounds Write vulnerability in Dlink Dir-882 A1 Firmware 1.30B06 D-Link DIR-882 DIR882A1_FW130B06, DIR-878 DIR_878_FW1.30B08 was discovered to contain a stack overflow via the Password parameter in the SetDynamicDNSSettings module. | 7.2 |
2022-12-23 | CVE-2022-46566 | Out-of-bounds Write vulnerability in Dlink Dir-882 A1 Firmware 1.30B06 D-Link DIR-882 DIR882A1_FW130B06, DIR-878 DIR_878_FW1.30B08 was discovered to contain a stack overflow via the Password parameter in the SetQuickVPNSettings module. | 7.2 |
2022-12-23 | CVE-2022-46568 | Out-of-bounds Write vulnerability in Dlink Dir-882 A1 Firmware 1.30B06 D-Link DIR-882 DIR882A1_FW130B06, DIR-878 DIR_878_FW1.30B08 was discovered to contain a stack overflow via the AccountPassword parameter in the SetSysEmailSettings module. | 7.2 |
2022-12-23 | CVE-2022-46569 | Out-of-bounds Write vulnerability in Dlink Dir-882 A1 Firmware 1.30B06 D-Link DIR-882 DIR882A1_FW130B06, DIR-878 DIR_878_FW1.30B08 was discovered to contain a stack overflow via the Key parameter in the SetWLanRadioSecurity module. | 7.2 |
2022-12-23 | CVE-2022-46570 | Out-of-bounds Write vulnerability in Dlink Dir-882 A1 Firmware 1.30B06 D-Link DIR-882 DIR882A1_FW130B06, DIR-878 DIR_878_FW1.30B08 was discovered to contain a stack overflow via the Password parameter in the SetWan3Settings module. | 7.2 |
2022-12-20 | CVE-2022-38873 | Unspecified vulnerability in Dlink products D-Link devices DAP-2310 v2.10rc036 and earlier, DAP-2330 v1.06rc020 and earlier, DAP-2360 v2.10rc050 and earlier, DAP-2553 v3.10rc031 and earlier, DAP-2660 v1.15rc093 and earlier, DAP-2690 v3.20rc106 and earlier, DAP-2695 v1.20rc119_beta31 and earlier, DAP-3320 v1.05rc027 beta and earlier, DAP-3662 v1.05rc047 and earlier allows attackers to cause a Denial of Service (DoS) via uploading a crafted firmware after modifying the firmware header. | 7.5 |
2022-12-20 | CVE-2022-46076 | Incorrect Authorization vulnerability in Dlink Dir-869 Firmware and Dir-869Ax Firmware D-Link DIR-869 DIR869Ax_FW102B15 is vulnerable to Authentication Bypass via phpcgi. | 7.5 |
2022-11-29 | CVE-2022-40799 | Download of Code Without Integrity Check vulnerability in Dlink Dnr-322L Firmware Data Integrity Failure in 'Backup Config' in D-Link DNR-322L <= 2.60B15 allows an authenticated attacker to execute OS level commands on the device. | 8.8 |
2022-11-17 | CVE-2022-36785 | Incorrect Authorization vulnerability in Dlink G Integrated Access Device4 Firmware 1.0 D-Link – G integrated Access Device4 Information Disclosure & Authorization Bypass. *Information Disclosure – file contains a URL with private IP at line 15 "login.asp" A. | 7.5 |
2022-10-26 | CVE-2022-42999 | OS Command Injection vulnerability in Dlink Dir-816 Firmware 1.10B05 D-Link DIR-816 A2 1.10 B05 was discovered to contain multiple command injection vulnerabilities via the admuser and admpass parameters at /goform/setSysAdm. | 7.5 |