Vulnerabilities > Dlink > High

DATE CVE VULNERABILITY TITLE RISK
2022-05-18 CVE-2022-28955 Improper Authentication vulnerability in Dlink Dir-816L Firmware 206B01
An access control issue in D-Link DIR816L_FW206b01 allows unauthenticated attackers to access folders folder_view.php and category_view.php.
network
low complexity
dlink CWE-287
7.5
2022-04-27 CVE-2021-46441 OS Command Injection vulnerability in Dlink Dir-825 Firmware
In the "webupg" binary of D-Link DIR-825 G1, because of the lack of parameter verification, attackers can use "cmd" parameters to execute arbitrary system commands after obtaining authorization.
network
low complexity
dlink CWE-78
8.8
2022-04-11 CVE-2022-1262 OS Command Injection vulnerability in Dlink products
A command injection vulnerability in the protest binary allows an attacker with access to the remote command line interface to execute arbitrary commands as root.
local
low complexity
dlink CWE-78
7.8
2022-04-10 CVE-2022-27286 Out-of-bounds Write vulnerability in Dlink Dir-619 AX Firmware 1.00
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanNonLogin.
network
low complexity
dlink CWE-787
7.5
2022-04-10 CVE-2022-27287 Out-of-bounds Write vulnerability in Dlink Dir-619 AX Firmware 1.00
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanPPPoE.
network
low complexity
dlink CWE-787
7.5
2022-04-10 CVE-2022-27288 Out-of-bounds Write vulnerability in Dlink Dir-619 Firmware 1.00
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanPPTP.
network
low complexity
dlink CWE-787
7.5
2022-04-10 CVE-2022-27289 Out-of-bounds Write vulnerability in Dlink Dir-619 Firmware 1.00
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanL2TP.
network
low complexity
dlink CWE-787
7.5
2022-04-10 CVE-2022-27290 Out-of-bounds Write vulnerability in Dlink Dir-619 Firmware 1.00
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanDhcpplus.
network
low complexity
dlink CWE-787
7.5
2022-04-10 CVE-2022-27291 Out-of-bounds Write vulnerability in Dlink Dir-619 Firmware 1.00
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formdumpeasysetup.
network
low complexity
dlink CWE-787
7.5
2022-04-10 CVE-2022-27292 Out-of-bounds Write vulnerability in Dlink Dir-619 Firmware 1.00
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formLanguageChange.
network
low complexity
dlink CWE-787
7.5