Skip to content
feed: live
>_0dayNews
← All vendors
Vendor

D-Link

Coverage of CVEs, patches, and active exploitation affecting D-Link networking hardware including SOHO routers, 4G LTE gateways, and access points. D-Link devices are widely deployed in home and small business networks, and firmware vulnerabilities in the DWR, DSL, and DIR series recur across successive models.

29 CVEs1 articlesRSS
CVEs
CVE-2026-90699
[ CRITICAL ]CVSS 9.9EPSS 1.6%unpatched

D-Link DWR-M920 command injection via SIM PIN management endpoint

D-Link DWR-M920 firmware 1.1.7 passes the newPin argument from /boafrm/formPinManageSetup directly to the system shell, allowing OS command injection. CVSS 9.9 critical.

D-Link / DWR-M920 (firmware 1.1.7)
CVE-2026-90702
[ CRITICAL ]CVSS 9.1EPSS 2.8%unpatched

D-Link DWR-M921 command injection via disk format endpoint

D-Link DWR-M921 firmware 1.1.52 passes the partition argument from /boafrm/formDiskFormat to the system shell without sanitization, enabling OS command injection. CVSS 9.1 critical.

D-Link / DWR-M921 (firmware 1.1.52)
CVE-2026-90703
[ CRITICAL ]CVSS 9.1EPSS 2.8%unpatched

D-Link DWR-M921 command injection via disk share creation endpoint

D-Link DWR-M921 firmware 1.1.52 passes the folderpath argument from /boafrm/formDiskCreateShare to the system shell without sanitization, enabling OS command injection. CVSS 9.1 critical.

D-Link / DWR-M921 (firmware 1.1.52)
CVE-2025-29635
[ HIGH ]CVSS 7.2EPSS 87.9%kev

D-Link DIR-823X Command Injection Vulnerability

D-Link DIR-823X contains a command injection vulnerability that allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /goform/set_prohibiting via the corresponding function. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

D-Link / DIR-823X
CVE-2022-37055
[ CRITICAL ]CVSS 9.8EPSS 55.5%kev

D-Link Routers Buffer Overflow Vulnerability

D-Link Routers contains a buffer overflow vulnerability that has a high impact on confidentiality, integrity, and availability. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

D-Link / Routers
CVE-2020-25078
[ HIGH ]CVSS 7.5EPSS 97.9%kev

D-Link DCS-2530L and DCS-2670L Devices Unspecified Vulnerability

D-Link DCS-2530L and DCS-2670L devices contains an unspecified vulnerability that could allow for remote administrator password disclosure. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

D-Link / DCS-2530L and DCS-2670L Devices
CVE-2020-25079
[ HIGH ]CVSS 8.8EPSS 56.3%kev

D-Link DCS-2530L and DCS-2670L Command Injection Vulnerability

D-Link DCS-2530L and DCS-2670L devices contains a command injection vulnerability in the cgi-bin/ddns_enc.cgi. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

D-Link / DCS-2530L and DCS-2670L Devices
CVE-2022-40799
[ HIGH ]CVSS 8.8EPSS 33.7%kev

D-Link DNR-322L Download of Code Without Integrity Check Vulnerability

D-Link DNR-322L contains a download of code without integrity check vulnerability that could allow an authenticated attacker to execute OS level commands on the device. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.

D-Link / DNR-322L
CVE-2024-0769
[ MEDIUM ]CVSS 5.3EPSS 82.7%kev

D-Link DIR-859 Router Path Traversal Vulnerability

D-Link DIR-859 routers contain a path traversal vulnerability in the file /hedwig.cgi of the component HTTP POST Request Handler. Manipulation of the argument service with the input ../../../../htdocs/webinc/getcfg/DHCPS6.BRIDGE-1.xml allows for the leakage of session data potentially enabling privilege escalation and unauthorized control of the device. This vulnerability affects legacy D-Link products. All associated hardware revisions have reached their end-of-life (EOL) or end-of-service (EOS) life cycle and should be retired and replaced per vendor instructions.

D-Link / DIR-859 Router
CVE-2023-25280
[ CRITICAL ]CVSS 9.8EPSS 97.9%kev

D-Link DIR-820 Router OS Command Injection Vulnerability

D-Link DIR-820 routers contain an OS command injection vulnerability that allows a remote, unauthenticated attacker to escalate privileges to root via a crafted payload with the ping_addr parameter to ping.ccp.

D-Link / DIR-820 Router
CVE-2014-100005
[ HIGH ]CVSS 8.0EPSS 48.1%kev

D-Link DIR-600 Router Cross-Site Request Forgery (CSRF) Vulnerability

D-Link DIR-600 routers contain a cross-site request forgery (CSRF) vulnerability that allows an attacker to change router configurations by hijacking an existing administrator session.

D-Link / DIR-600 Router
CVE-2021-40655
[ HIGH ]CVSS 7.5EPSS 86.7%kev

D-Link DIR-605 Router Information Disclosure Vulnerability

D-Link DIR-605 routers contain an information disclosure vulnerability that allows attackers to obtain a username and password by forging a post request to the /getcfg.php page.

D-Link / DIR-605 Router
CVE-2024-3272
[ CRITICAL ]CVSS 9.8EPSS 98.0%kev

D-Link Multiple NAS Devices Use of Hard-Coded Credentials Vulnerability

D-Link DNS-320L, DNS-325, DNS-327L, and DNS-340L contains a hard-coded credential that allows an attacker to conduct authenticated command injection, leading to remote, unauthorized code execution.

D-Link / Multiple NAS Devices
CVE-2024-3273
[ HIGH ]CVSS 7.3EPSS 100.0%kev

D-Link Multiple NAS Devices Command Injection Vulnerability

D-Link DNS-320L, DNS-325, DNS-327L, and DNS-340L contain a command injection vulnerability. When combined with CVE-2024-3272, this can lead to remote, unauthorized code execution.

D-Link / Multiple NAS Devices
CVE-2016-20017
[ CRITICAL ]CVSS 9.8EPSS 65.2%kev

D-Link DSL-2750B Devices Command Injection Vulnerability

D-Link DSL-2750B devices contain a command injection vulnerability that allows remote, unauthenticated command injection via the login.cgi cli parameter.

D-Link / DSL-2750B Devices
CVE-2019-17621
[ CRITICAL ]CVSS 9.8EPSS 89.6%kev

D-Link DIR-859 Router Command Execution Vulnerability

D-Link DIR-859 router contains a command execution vulnerability in the UPnP endpoint URL, /gena.cgi. Exploitation allows an unauthenticated remote attacker to execute system commands as root by sending a specially crafted HTTP SUBSCRIBE request to the UPnP service when connecting to the local network.

D-Link / DIR-859 Router
CVE-2019-20500
[ HIGH ]CVSS 7.8EPSS 97.1%kev

D-Link DWL-2600AP Access Point Command Injection Vulnerability

D-Link DWL-2600AP access point contains an authenticated command injection vulnerability via the Save Configuration functionality in the Web interface, using shell metacharacters in the admin.cgi?action=config_save configBackup or downloadServerip parameter.

D-Link / DWL-2600AP Access Point
CVE-2011-4723
[ MEDIUM ]CVSS 5.7EPSS 3.0%kev

D-Link DIR-300 Router Cleartext Storage of a Password Vulnerability

The D-Link DIR-300 router stores cleartext passwords, which allows context-dependent attackers to obtain sensitive information.

D-Link / DIR-300 Router
CVE-2018-6530
[ CRITICAL ]CVSS 9.8EPSS 96.7%kev

D-Link Multiple Routers OS Command Injection Vulnerability

Multiple D-Link routers contain an unspecified vulnerability that allows for execution of OS commands.

D-Link / Multiple Routers
CVE-2022-26258
[ CRITICAL ]CVSS 9.8EPSS 92.0%kev

D-Link DIR-820L Remote Code Execution Vulnerability

D-Link DIR-820L contains an unspecified vulnerability in Device Name parameter in /lan.asp which allows for remote code execution.

D-Link / DIR-820L
CVE-2019-16057
[ CRITICAL ]CVSS 9.8EPSS 87.1%kev

D-Link DNS-320 Remote Code Execution Vulnerability

The login_mgr.cgi script in D-Link DNS-320 is vulnerable to remote code execution.

D-Link / DNS-320 Storage Device
CVE-2021-45382
[ CRITICAL ]CVSS 9.8EPSS 97.8%kev

D-Link Multiple Routers Remote Code Execution Vulnerability

A remote code execution vulnerability exists in all series H/W revisions routers via the DDNS function in ncc2 binary file.

D-Link / Multiple Routers
CVE-2013-5223
[ MEDIUM ]CVSS 5.4EPSS 33.6%kev

D-Link DSL-2760U Gateway Cross-Site Scripting Vulnerability

A cross-site scripting (XSS) vulnerability exists in the D-Link DSL-2760U gateway, allowing remote authenticated users to inject arbitrary web script or HTML.

D-Link / DSL-2760U
CVE-2016-11021
[ HIGH ]CVSS 7.2EPSS 68.9%kev

D-Link DCS-930L Devices OS Command Injection Vulnerability

setSystemCommand on D-Link DCS-930L devices allows a remote attacker to execute code via an OS command.

D-Link / DCS-930L Devices
CVE-2019-16920
[ CRITICAL ]CVSS 9.8EPSS 100.0%kev

D-Link Multiple Routers Command Injection Vulnerability

Multiple D-Link routers contain a command injection vulnerability which can allow attackers to achieve full system compromise.

D-Link / Multiple Routers
CVE-2020-9377
[ HIGH ]CVSS 8.8EPSS 21.3%kev

D-Link DIR-610 Devices Remote Command Execution

D-Link DIR-610 devices allow remote code execution via the cmd parameter to command.php.

D-Link / DIR-610 Devices
CVE-2015-2051
[ HIGH ]CVSS 8.8EPSS 97.1%kev

D-Link DIR-645 Router Remote Code Execution Vulnerability

D-Link DIR-645 Wired/Wireless Router allows remote attackers to execute arbitrary commands via a GetDeviceSettings action to the HNAP interface.

D-Link / DIR-645 Router
CVE-2020-25506
[ CRITICAL ]CVSS 9.8EPSS 100.0%kev

D-Link DNS-320 Device Command Injection Vulnerability

D-Link DNS-320 device contains a command injection vulnerability in the sytem_mgr.cgi component that may allow for remote code execution.

D-Link / DNS-320 Device
CVE-2020-29557
[ CRITICAL ]CVSS 9.8EPSS 54.3%kev

D-Link DIR-825 R1 Devices Buffer Overflow Vulnerability

D-Link DIR-825 R1 devices contain a buffer overflow vulnerability in the web interface that may allow for remote code execution.

D-Link / DIR-825 R1 Devices
Articles