Vulnerabilities
Vulnerable Software
Dlink:  Security Vulnerabilities
In the "webupg" binary of D-Link DIR-825 G1, because of the lack of parameter verification, attackers can use "cmd" parameters to execute arbitrary system commands after obtaining authorization.
CVSS Score
8.8
EPSS Score
0.326
Published
2022-04-27
In the "webupg" binary of D-Link DIR-825 G1, attackers can bypass authentication through parameters "autoupgrade.asp", and perform functions such as downloading configuration files and updating firmware without authorization.
CVSS Score
9.8
EPSS Score
0.555
Published
2022-04-27
A command injection vulnerability in the protest binary allows an attacker with access to the remote command line interface to execute arbitrary commands as root.
CVSS Score
7.8
EPSS Score
0.022
Published
2022-04-11
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formLanguageChange. This vulnerability allows attackers to cause a Denial of Service (DoS) via the nextPage parameter.
CVSS Score
7.5
EPSS Score
0.012
Published
2022-04-10
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formWlanSetup. This vulnerability allows attackers to cause a Denial of Service (DoS) via the webpage parameter.
CVSS Score
7.5
EPSS Score
0.025
Published
2022-04-10
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formWlanWizardSetup. This vulnerability allows attackers to cause a Denial of Service (DoS) via the webpage parameter.
CVSS Score
7.5
EPSS Score
0.014
Published
2022-04-10
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formAdvanceSetup. This vulnerability allows attackers to cause a Denial of Service (DoS) via the webpage parameter.
CVSS Score
7.5
EPSS Score
0.014
Published
2022-04-10
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanNonLogin. This vulnerability allows attackers to cause a Denial of Service (DoS) via the curTime parameter.
CVSS Score
7.5
EPSS Score
0.015
Published
2022-04-10
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanPPPoE. This vulnerability allows attackers to cause a Denial of Service (DoS) via the curTime parameter.
CVSS Score
7.5
EPSS Score
0.015
Published
2022-04-10
D-Link DIR-619 Ax v1.00 was discovered to contain a stack overflow in the function formSetWanPPTP. This vulnerability allows attackers to cause a Denial of Service (DoS) via the curTime parameter.
CVSS Score
7.5
EPSS Score
0.014
Published
2022-04-10


Contact Us

Shodan ® - All rights reserved