Vulnerabilities
Vulnerable Software
Dlink:  Security Vulnerabilities
D-Link DIR878 1.30B08 Hotfix_04 was discovered to contain a command injection vulnerability via the component /bin/proc.cgi.
CVSS Score
9.8
EPSS Score
0.018
Published
2022-10-19
CVE-2016-20017
Known exploited
D-Link DSL-2750B devices before 1.05 allow remote unauthenticated command injection via the login.cgi cli parameter, as exploited in the wild in 2016 through 2022.
CVSS Score
9.8
EPSS Score
0.652
Published
2022-10-19
D-Link COVR 1200,1203 v1.08 was discovered to contain a command injection vulnerability via the tomography_ping_number parameter at function SetNetworkTomographySettings.
CVSS Score
8.8
EPSS Score
0.027
Published
2022-10-13
D-Link COVR 1200,1202,1203 v1.08 was discovered to have a predictable seed in a Pseudo-Random Number Generator.
CVSS Score
4.3
EPSS Score
0.007
Published
2022-10-13
D-Link COVR 1200,1202,1203 v1.08 was discovered to contain a command injection vulnerability via the system_time_timezone parameter at function SetNTPServerSettings.
CVSS Score
8.8
EPSS Score
0.027
Published
2022-10-13
D-Link COVR 1200,1202,1203 v1.08 was discovered to contain a command injection vulnerability via the /SetTriggerWPS/PIN parameter at function SetTriggerWPS.
CVSS Score
8.8
EPSS Score
0.027
Published
2022-10-13
A local file inclusion (LFI) vulnerability in D-Link DIR 819 v1.06 allows attackers to cause a Denial of Service (DoS) or access sensitive server information via manipulation of the getpage parameter in a crafted web request.
CVSS Score
8.1
EPSS Score
0.012
Published
2022-09-08
In D-Link DAP1650 v1.04 firmware, the fileaccess.cgi program in the firmware has a buffer overflow vulnerability caused by strncpy.
CVSS Score
9.8
EPSS Score
0.016
Published
2022-09-08
D-Link DIR-1960 firmware DIR-1960_A1_1.11 was discovered to contain a buffer overflow via srtcat in prog.cgi. This vulnerability allowed attackers to cause a Denial of Service (DoS) via a crafted HTTP request.
CVSS Score
7.5
EPSS Score
0.018
Published
2022-09-07
In D-link DIR-816 A2_v1.10CNB04.img,the network can be reset without authentication via /goform/setMAC.
CVSS Score
7.5
EPSS Score
0.01
Published
2022-08-31


Contact Us

Shodan ® - All rights reserved