Vulnerabilities
1,621 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2026-15270 | A weakness has been identified in D-link DIR-823G 1.0.2B05_20181207. A weakness has been identified in D-link DIR-823G 1.0.2B05_20181207. Affected by this vulnerability is an unknown functionality of the file /etc/boa/boa.conf of the component Web Interface. Executing a manipulation can lead to least privilege violation. The attack can be launched remotely. The attack requires a high level of complexity. The exploitation appears to be difficult. The exploit has been made available to the public and could be used for attacks. NVD description · AI analysis pending | 6.8 | <1% |
| — | ||
| CVE-2026-13545 | A vulnerability has been found in D-Link DCS-935L 1.10.01. A vulnerability has been found in D-Link DCS-935L 1.10.01. This affects the function sub_400E40 of the file setconf.cgi of the component POST Parameter Handler. Such manipulation of the argument UID leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. NVD description · AI analysis pending | 7.4 | 6% | PoC |
| — | |
| CVE-2026-12174 | A security vulnerability has been detected in D-Link DCS-935L 1.10.01. A security vulnerability has been detected in D-Link DCS-935L 1.10.01. This issue affects the function snprintf of the file /web/cgi-bin/greece/rhea of the component HTTP Handler. Such manipulation of the argument data leads to format string. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. NVD description · AI analysis pending | 7.4 | <1% |
| — | ||
| CVE-2026-11555 | A vulnerability was identified in D-Link DGS-1100-08PD 1.00.006. A vulnerability was identified in D-Link DGS-1100-08PD 1.00.006. This issue affects some unknown processing of the file /etc/boa.conf of the component Web Interface. Such manipulation leads to least privilege violation. The attack may be launched remotely. The attack requires a high level of complexity. The exploitability is assessed as difficult. The exploit is publicly available and might be used. NVD description · AI analysis pending | 2.9 | <1% |
| — | ||
| CVE-2026-11497 | A vulnerability has been found in D-Link DCS-5615 1.01.00. A vulnerability has been found in D-Link DCS-5615 1.01.00. Affected by this vulnerability is an unknown functionality of the file /etc/conf.d/boa/boa.conf of the component Boa Webserver. Such manipulation leads to least privilege violation. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. NVD description · AI analysis pending | 5.5 | <1% |
| — | ||
| CVE-2026-11492 | A security flaw has been discovered in D-Link DIR-823G 1.0.2B05. A security flaw has been discovered in D-Link DIR-823G 1.0.2B05. The affected element is an unknown function of the file /etc/vsftpd.conf of the component vsftpd. Performing a manipulation results in least privilege violation. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks. NVD description · AI analysis pending | 2.1 | <1% | PoC |
| — | |
| CVE-2026-10878 +1 in the same advisory: …11339 | A vulnerability was detected in D-Link DWR-M920 1.1.50/1.1.70. A vulnerability was detected in D-Link DWR-M920 1.1.50/1.1.70. Affected is the function sub_41C8E8 of the file /boafrm/formSmsManage. Performing a manipulation of the argument action_value results in command injection. The attack is possible to be carried out remotely. The exploit is now public and may be used. NVD description · AI analysis pending | 2.1 | 4% | PoC |
| — | |
| CVE-2026-10270 | A vulnerability was detected in D-Link DI-7001 MINI up to 19.09.19A1. A vulnerability was detected in D-Link DI-7001 MINI up to 19.09.19A1. Impacted is the function sprintf of the file /httpd_debug.asp of the component API. The manipulation of the argument Time results in stack-based buffer overflow. The attack may be performed from remote. The exploit is now public and may be used. NVD description · AI analysis pending | 7.4 | <1% | PoC ×3 |
| — | |
| CVE-2026-8346 | A vulnerability was detected in D-Link DIR-816 1.10CNB05_R1B011D88210. A vulnerability was detected in D-Link DIR-816 1.10CNB05_R1B011D88210. This affects the function portForward. Performing a manipulation of the argument ip_address results in command injection. The attack can be initiated remotely. The exploit is now public and may be used. NVD description · AI analysis pending | 2.1 | 3% | PoC |
| — | |
| CVE-2026-8345 +1 in the same advisory: …8344 | A security vulnerability has been detected in D-Link DIR-816 1.10CNB05_R1B011D88210. A security vulnerability has been detected in D-Link DIR-816 1.10CNB05_R1B011D88210. Affected by this issue is the function sub_445E7C of the file /goform/singlePortForward. Such manipulation of the argument ip_address leads to command injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used. NVD description · AI analysis pending | 2.1 | 3% | PoC |
| — | |
| CVE-2026-36983 | D-Link DCS-932L v2.18.01 is vulnerable to Command Injection in the function sub_42EF14 of the file /bin/alphapd. D-Link DCS-932L v2.18.01 is vulnerable to Command Injection in the function sub_42EF14 of the file /bin/alphapd. The manipulation of the argument LightSensorControl leads to command injection. NVD description · AI analysis pending | 7.3 | 1% | PoC |
| — | |
| CVE-2026-8273 | A weakness has been identified in D-Link DNS-320 2.06B01. A weakness has been identified in D-Link DNS-320 2.06B01. This impacts the function cgi_set_host/cgi_set_ntp/cgi_fan_control/cgi_merge_user of the file /cgi-bin/system_mgr.cgi. This manipulation causes os command injection. It is possible to initiate the attack remotely. NVD description · AI analysis pending | 5.1 group max | 5% | PoC |
| — | |
| CVE-2026-8260 | A vulnerability was found in D-Link DCS-935L up to 1.10.01. A vulnerability was found in D-Link DCS-935L up to 1.10.01. The impacted element is the function SetDeviceSettings of the file /web/cgi-bin/hnap/hnap_service of the component HNAP Service. The manipulation of the argument AdminPassword results in buffer overflow. The attack can be executed remotely. The exploit has been made public and could be used. NVD description · AI analysis pending | 7.4 | <1% | PoC |
| — | |
| CVE-2026-7854 | A security vulnerability has been detected in D-Link DI-8100 16.07.26A1. A security vulnerability has been detected in D-Link DI-8100 16.07.26A1. Affected by this vulnerability is the function url_rule_asp of the file /url_rule.asp of the component POST Parameter Handler. Such manipulation leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used. NVD description · AI analysis pending | 8.9 group max | 6% | PoC |
| — | |
| CVE-2026-42376 | D-Link DIR-456U Hardware Revision A1 (End-of-Life, EOL) contains a hardcoded telnet backdoor. D-Link DIR-456U Hardware Revision A1 (End-of-Life, EOL) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /etc/init0.d/S80telnetd.sh with the username "Alphanetworks" and the static password "whdrv01_dlob_dir456U" read from /etc/config/image_sign. The custom telnetd binary accepts a -u user:password flag, and the custom login binary uses strcmp() to validate credentials. Successful authentication grants an unauthenticated attacker on the local network a root shell with full administrative control. The device has reached End-of-Life (EOL) and will not receive patches. NVD description · AI analysis pending | 9.8 | <1% | PoC |
| — | |
| CVE-2026-42375 +1 in the same advisory: …42374 | D-Link DIR-600L Hardware Revision A1 (End-of-Life) contains a hardcoded telnet backdoor. D-Link DIR-600L Hardware Revision A1 (End-of-Life) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telnetd.sh with the username "Alphanetworks" and the static password "wrgn35_dlwbr_dir600l" read from /etc/alpha_config/image_sign. The custom telnetd binary accepts a -u user:password flag, and the custom login binary uses strcmp() to validate credentials. Successful authentication grants an unauthenticated attacker on the local network a root shell with full administrative control. The device has reached End-of-Life (EOL) and will not receive patches. NVD description · AI analysis pending | 8.8 | <1% | PoC |
| — | |
| CVE-2026-42373 +1 in the same advisory: …42372 | D-Link DIR-605L Hardware Revision B2 (End-of-Life, EOL) contains a hardcoded telnet backdoor. D-Link DIR-605L Hardware Revision B2 (End-of-Life, EOL) contains a hardcoded telnet backdoor. The device starts a telnet daemon at boot via /bin/telnetd.sh with the username "Alphanetworks" and the static password "wrgn76_dlwbr_dir605L" read from /etc/alpha_config/image_sign. The custom telnetd binary accepts a -u user:password flag, and the custom login binary uses strcmp() to validate credentials. Successful authentication grants an unauthenticated attacker on the local network a root shell with full administrative control. The device has reached End-of-Life (EOL) and will not receive patches. NVD description · AI analysis pending | 8.8 | <1% | PoC |
| — | |
| CVE-2026-7554 | A vulnerability was determined in D-Link M60 up to 1.20B02. A vulnerability was determined in D-Link M60 up to 1.20B02. Affected by this issue is some unknown functionality of the file /usr/bin/httpd. This manipulation causes weak password recovery. The attack can be initiated remotely. A high degree of complexity is needed for the attack. The exploitation is known to be difficult. The exploit has been publicly disclosed and may be utilized. NVD description · AI analysis pending | 2.9 | 1% | PoC |
| — | |
| CVE-2026-7289 +1 in the same advisory: …7288 | A vulnerability was found in D-Link DIR-825M 1.1.12. A vulnerability was found in D-Link DIR-825M 1.1.12. This issue affects the function sub_414BA8 of the file /boafrm/formWanConfigSetup. The manipulation of the argument submit-url results in buffer overflow. The attack can be executed remotely. The exploit has been made public and could be used. NVD description · AI analysis pending | 7.4 | <1% | PoC |
| — | |
| CVE-2026-7248 +1 in the same advisory: …7247 | A vulnerability was found in D-Link DI-8100 16.07.26A1. A vulnerability was found in D-Link DI-8100 16.07.26A1. This affects the function tgfile_htm of the file tgfile.htm of the component CGI Endpoint. The manipulation of the argument fn results in buffer overflow. The attack can be executed remotely. The exploit has been made public and could be used. NVD description · AI analysis pending | 8.9 group max | 2% | PoC |
| — | |
| CVE-2026-7068 +1 in the same advisory: …7069 | A vulnerability was identified in D-Link DIR-825 3.00b32. A vulnerability was identified in D-Link DIR-825 3.00b32. This affects the function NMBD_process of the file sserver.c of the component nmbd. Such manipulation leads to buffer overflow. The attack can only be initiated within the local network. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer. NVD description · AI analysis pending | 7.4 group max | 2% | PoC |
| — | |
| CVE-2026-7067 | A vulnerability was determined in D-Link DIR-822 A_101. A vulnerability was determined in D-Link DIR-822 A_101. The impacted element is the function system of the file /udhcpcd/dhcpd.c of the component udhcpd DHCP Service. This manipulation of the argument Hostname causes command injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. This vulnerability only affects products that are no longer supported by the maintainer. NVD description · AI analysis pending | 5.5 | 2% | PoC |
| — | |
| CVE-2026-7027 | A vulnerability was identified in D-Link DSL-2740R EU_01.15. A vulnerability was identified in D-Link DSL-2740R EU_01.15. Impacted is an unknown function of the component Wireless Setup Section. Such manipulation of the argument Wireless Network Name leads to cross site scripting. The attack can be executed remotely. The exploit is publicly available and might be used. NVD description · AI analysis pending | 1.9 | <1% |
| — | ||
| CVE-2026-7026 | A vulnerability was determined in D-Link DGS-3420 1.50.018. A vulnerability was determined in D-Link DGS-3420 1.50.018. This issue affects some unknown processing of the component System Information Settings Page. This manipulation of the argument System Name causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. NVD description · AI analysis pending | 5.4 | <1% |
| — | ||
| CVE-2026-6013 | A vulnerability was detected in D-Link DIR-513 1.10. A vulnerability was detected in D-Link DIR-513 1.10. This vulnerability affects the function formSetRoute of the file /goform/formSetRoute of the component POST Request Handler. The manipulation of the argument curTime results in buffer overflow. The attack may be performed from remote. The exploit is now public and may be used. This vulnerability only affects products that are no longer supported by the maintainer. NVD description · AI analysis pending | 7.4 | <1% | PoC |
| — | |
| CVE-2026-5984 | A vulnerability was identified in D-Link DIR-605L 2.13B01. A vulnerability was identified in D-Link DIR-605L 2.13B01. Impacted is the function formSetLog of the file /goform/formSetLog of the component POST Request Handler. The manipulation of the argument curTime leads to buffer overflow. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer. NVD description · AI analysis pending | 7.4 | <1% | PoC |
| — | |
| CVE-2026-5844 | A vulnerability was found in D-Link DIR-882 1.01B02. A vulnerability was found in D-Link DIR-882 1.01B02. Impacted is the function sprintf of the file prog.cgi of the component HNAP1 SetNetworkSettings Handler. The manipulation of the argument IPAddress results in os command injection. The attack may be performed from remote. The exploit has been made public and could be used. This vulnerability only affects products that are no longer supported by the maintainer. NVD description · AI analysis pending | 7.3 | 5% | PoC |
| — | |
| CVE-2025-50672 +1 in the same advisory: …50673 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of parameters in the /yyxz_dlink.asp endpoint. A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of parameters in the /yyxz_dlink.asp endpoint. NVD description · AI analysis pending | 7.5 | <1% |
| — |