Vulnerabilities
Vulnerable Software
Dlink:  >> R15  Security Vulnerabilities
A vulnerability has been found in D-Link R15 (AX1500) 1.20.01 and below. By manipulating the model name parameter during a password change request in the web administrator page, it is possible to trigger a command injection in httpd.
CVSS Score
9.8
EPSS Score
0.001
Published
2025-12-02
D-Link R15 before v1.08.02 was discovered to contain no firewall restrictions for IPv6 traffic. This allows attackers to arbitrarily access any services running on the device that may be inadvertently listening via IPv6.
CVSS Score
5.3
EPSS Score
0.002
Published
2024-01-10


Contact Us

Shodan ® - All rights reserved