Vulnerabilities (CVE)

Filtered by vendor Dlink Subscribe
Total 1765 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-30063 1 Dlink 2 Dir-890l, Dir-890l Firmware 2026-06-17 N/A 7.5 HIGH
D-Link DIR-890L FW1.10 A1 is vulnerable to Authentication bypass.
CVE-2023-30061 1 Dlink 2 Dir-879, Dir-879 Firmware 2026-06-17 N/A 7.5 HIGH
D-Link DIR-879 v105A1 is vulnerable to Authentication Bypass via phpcgi.
CVE-2023-29961 1 Dlink 2 Dir-605l, Dir-605l Firmware 2026-06-17 N/A 9.8 CRITICAL
D-Link DIR-605L firmware version 1.17B01 BETA is vulnerable to stack overflow via /goform/formTcpipSetup,
CVE-2023-29856 1 Dlink 2 Dir-868l, Dir-868l Firmware 2026-06-17 N/A 9.8 CRITICAL
D-Link DIR-868L Hardware version A1, firmware version 1.12 is vulnerable to Buffer Overflow. The vulnerability is in scandir.sgi binary.
CVE-2023-29665 1 Dlink 2 Dir-823g, Dir-823g Firmware 2026-06-17 N/A 9.8 CRITICAL
D-Link DIR823G_V1.0.2B05 was discovered to contain a stack overflow via the NewPassword parameters in SetPasswdSettings.
CVE-2023-27720 1 Dlink 2 Dir-878, Dir-878 Firmware 2026-06-17 N/A 9.8 CRITICAL
D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_48d630 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
CVE-2023-27719 1 Dlink 2 Dir878, Dir878 Firmware 2026-06-17 N/A 9.8 CRITICAL
D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_478360 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
CVE-2023-27718 1 Dlink 2 Dir878, Dir878 Firmware 2026-06-17 N/A 9.8 CRITICAL
D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_498308 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.
CVE-2023-26925 1 Dlink 2 Dir-882, Dir-882 Firmware 2026-06-17 N/A 7.5 HIGH
An information disclosure vulnerability exists in the Syslog functionality of D-LINK DIR-882 1.30. A specially crafted network request can lead to the disclosure of sensitive information.
CVE-2023-26822 1 Dlink 2 Go-rt-ac750, Go-rt-ac750 Firmware 2026-06-17 N/A 9.8 CRITICAL
D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at soapcgi.main.
CVE-2023-26616 1 Dlink 2 Dir-823g, Dir-823g Firmware 2026-06-17 N/A 9.8 CRITICAL
D-Link DIR-823G firmware version 1.02B05 has a buffer overflow vulnerability, which originates from the URL field in SetParentsControlInfo.
CVE-2023-26615 1 Dlink 2 Dir-823g, Dir-823g Firmware 2026-06-17 N/A 7.5 HIGH
D-Link DIR-823G firmware version 1.02B05 has a password reset vulnerability, which originates from the SetMultipleActions API, allowing unauthorized attackers to reset the WEB page management password.
CVE-2023-26613 1 Dlink 2 Dir-823g, Dir-823g Firmware 2026-06-17 N/A 9.8 CRITICAL
An OS command injection vulnerability in D-Link DIR-823G firmware version 1.02B05 allows unauthorized attackers to execute arbitrary operating system commands via a crafted GET request to EXCU_SHELL.
CVE-2023-26612 1 Dlink 2 Dir-823g, Dir-823g Firmware 2026-06-17 N/A 9.8 CRITICAL
D-Link DIR-823G firmware version 1.02B05 has a buffer overflow vulnerability, which originates from the HostName field in SetParentsControlInfo.
CVE-2023-25283 1 Dlink 2 Dir-820l, Dir-820l Firmware 2026-06-17 N/A 7.5 HIGH
A stack overflow vulnerability in D-Link DIR820LA1_FW106B02 allows attackers to cause a denial of service via the reserveDHCP_HostName_1.1.1.0 parameter to lan.asp.
CVE-2023-25282 1 Dlink 2 Dir-820l, Dir-820l Firmware 2026-06-17 N/A 6.5 MEDIUM
A heap overflow vulnerability in D-Link DIR820LA1_FW106B02 allows attackers to cause a denial of service via the config.log_to_syslog and log_opt_dropPackets parameters to mydlink_api.ccp.
CVE-2023-25281 1 Dlink 2 Dir-820l, Dir-820l Firmware 2026-06-17 N/A 7.5 HIGH
A stack overflow vulnerability exists in pingV4Msg component in D-Link DIR820LA1_FW105B03, allows attackers to cause a denial of service via the nextPage parameter to ping.ccp.
CVE-2023-25280 1 Dlink 2 Dir-820l, Dir-820l Firmware 2026-06-17 N/A 9.8 CRITICAL
OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload with the ping_addr parameter to ping.ccp.
CVE-2023-25279 1 Dlink 2 Dir-820l, Dir-820l Firmware 2026-06-17 N/A 9.8 CRITICAL
OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload.
CVE-2023-24800 1 Dlink 2 Dir-878, Dir-878 Firmware 2026-06-17 N/A 9.8 CRITICAL
D-Link DIR878 DIR_878_FW120B05 was discovered to contain a stack overflow in the sub_495220 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.