Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
dlink vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2021-39613
D-Link DVG-3104MS version 1.0.2.0.3, 1.0.2.0.4, and 1.0.2.0.4E contains hard-coded credentials for undocumented user accounts in the '/etc/passwd' file. As weak passwords have been used, the plaintext passwords can be recovered from the hash values. NOTE: This vulnerabi...
Dlink Dvg-3104ms Firmware 1.0.2.0.3
Dlink Dvg-3104ms Firmware 1.0.2.0.4
Dlink Dvg-3104ms Firmware 1.0.2.0.4e
8.8
CVSSv3
CVE-2019-19598
D-Link DAP-1860 devices before v1.04b03 Beta allow access to administrator functions without authentication via the HNAP_AUTH header timestamp value. In HTTP requests, part of the HNAP_AUTH header is the timestamp used to determine the time when the user sent the request. If this...
Dlink Dap-1860 Firmware 1.01b06
Dlink Dap-1860 Firmware 1.02b01
Dlink Dap-1860 Firmware 1.04b01
9.8
CVSSv3
CVE-2017-15909
D-Link DGS-1500 Ax devices prior to 2.51B021 have a hardcoded password, which allows remote malicious users to obtain shell access.
Dlink Dgs-1500 Firmware 2.10.002
Dlink Dgs-1500 Firmware 2.50.008
Dlink Dgs-1500 Firmware 2.51.005
NA
CVE-2014-3761
Cross-site scripting (XSS) vulnerability in D-Link DAP 1150 with firmware 1.2.94 allows remote malicious users to inject arbitrary web script or HTML via the res_buf parameter to index.cgi in the Control/URL-filter section.
Dlink Dap 1150 Firmware 1.2.94
Dlink Dap 1150 -
NA
CVE-2014-3760
Multiple cross-site request forgery (CSRF) vulnerabilities in D-Link DAP 1150 with firmware 1.2.94 allow remote malicious users to hijack the authentication of administrators for requests that (1) enable or (2) disable the DMZ in the Firewall/DMZ section via a request to index.cg...
Dlink Dap 1150 Firmware 1.2.94
Dlink Dap 1150 -
8.8
CVSSv3
CVE-2023-45208
A command injection in the parsing_xml_stasurvey function inside libcgifunc.so of the D-Link DAP-X1860 repeater 1.00 up to and including 1.01b05-01 allows attackers (within range of the repeater) to run shell commands as root during the setup process of the repeater, via a crafte...
Dlink Dap-1860 Firmware 1.00
Dlink Dap-1860 Firmware 1.01b05-01
Dlink Dap-1860 Firmware 1.01b94
NA
CVE-2013-4706
The SSH implementation on the D-Link Japan DWL-2100AP with firmware before R252JP-RC572 allows remote authenticated users to cause a denial of service (reboot) by leveraging login access.
Dlink Dwl-2100ap
Dlink Dwl-2100ap Firmware
NA
CVE-2013-2271
The D-Link DSL-2740B Gateway with firmware EU_1.0, when an active administrator session exists, allows remote malicious users to bypass authentication and gain administrator access via a request to login.cgi.
Dlink Dsl-2740b Firmware -
Dlink Dsl-2740b -
1 EDB exploit
8.8
CVSSv3
CVE-2017-8413
An issue exists on D-Link DCS-1100 and DCS-1130 devices. The device runs a custom daemon on UDP port 5978 which is called "dldps2121" and listens for broadcast packets sent on 255.255.255.255. This daemon handles custom D-Link UDP based protocol that allows D-Link mobil...
Dlink Dcs-1130 Firmware -
Dlink Dcs-1100 Firmware -
8.8
CVSSv3
CVE-2017-8416
An issue exists on D-Link DCS-1100 and DCS-1130 devices. The device runs a custom daemon on UDP port 5978 which is called "dldps2121" and listens for broadcast packets sent on 255.255.255.255. This daemon handles custom D-Link UDP based protocol that allows D-Link mobil...
Dlink Dcs-1130 Firmware -
Dlink Dcs-1100 Firmware -
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-21991
CVE-2024-32674
path traversal
CVE-2023-21987
denial of service
dos
CVE-2024-4647
CVE-2024-25519
CVE-2024-33612
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »