Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
d-link vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-24330
Command Injection vulnerability in D-Link Dir 882 with firmware version DIR882A1_FW130B06 allows malicious users to run arbitrary commands via crafted POST request to /HNAP1/.
NA
CVE-2023-24331
Command Injection vulnerability in D-Link Dir 816 with firmware version DIR-816_A2_v1.10CNB04 allows malicious users to run arbitrary commands via the urlAdd parameter.
9.8
CVSSv3
CVE-2024-22852
D-Link Go-RT-AC750 GORTAC750_A1_FW_v101b03 contains a stack-based buffer overflow via the function genacgi_main. This vulnerability allows malicious users to enable telnet service via a specially crafted payload.
Dlink Go-rt-ac750 Firmware 101b03
9.8
CVSSv3
CVE-2024-22853
D-LINK Go-RT-AC750 GORTAC750_A1_FW_v101b03 has a hardcoded password for the Alphanetworks account, which allows remote malicious users to obtain root access via a telnet session.
Dlink Go-rt-ac750 Firmware 101b03
9.8
CVSSv3
CVE-2024-0921
A vulnerability has been found in D-Link DIR-816 A2 1.10CNB04 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /goform/setDeviceSettings of the component Web Interface. The manipulation of the argument statuscheckpppoeuser leads t...
Dlink Dir-816 A2 Firmware 1.10cnb04
9.8
CVSSv3
CVE-2024-23624
A command injection vulnerability exists in the gena.cgi module of D-Link DAP-1650 devices. An unauthenticated attacker can exploit this vulnerability to gain command execution on the device as root.
Dlink Dap-1650 Firmware -
9.8
CVSSv3
CVE-2024-23625
A command injection vulnerability exists in D-Link DAP-1650 devices when handling UPnP SUBSCRIBE messages. An unauthenticated attacker can exploit this vulnerability to gain command execution on the device as root.
Dlink Dap-1650 Firmware -
9.8
CVSSv3
CVE-2024-22751
D-Link DIR-882 DIR882A1_FW130B06 exists to contain a stack overflow via the sub_477AA0 function.
Dlink Dir-882 A1 Firmware 1.30b06
9.8
CVSSv3
CVE-2024-22651
There is a command injection vulnerability in the ssdpcgi_main function of cgibin binary in D-Link DIR-815 router firmware v1.04.
Dlink Dir-815 Firmware
9.8
CVSSv3
CVE-2024-0769
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DIR-859 1.06B01. It has been rated as critical. Affected by this issue is some unknown functionality of the file /hedwig.cgi of the component HTTP POST Request Handler. The manipulation of the argument service wi...
Dlink Dir-859 Firmware 1.06
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
CVE-2006-4304
wireless
CVE-2023-23022
local file inclusion
CVE-2024-27058
CVE-2024-33820
open redirect
CVE-2024-27079
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »