← Back

D Link

d-link

112 CVEs • 127 products

Products (127)

Click to collapse
Toggle
Di 604
di-604
Di 614+
di-614+
Dsl G604t
dsl-g604t
Dsl G624t
dsl-g624t
Dl 704
dl-704
Dwl 1000ap
dwl-1000ap
Di 804
di-804
Dwl 900ap+
dwl-900ap+
Di 784
di-784
Dph 540
dph-540
Dph 541
dph-541
Dap 2253
dap_2253
Dp 303
dp-303
Di 624
di-624
Di 704p
di-704p
Dsl 502t
dsl-502t
Dsl 504t
dsl-504t
Dsl 562t
dsl-562t
Di 524
di-524
Dwl G700ap
dwl-g700ap
Dwl 2100ap
dwl-2100ap
Dwl G132
dwl-g132
Dwl 2000ap+
dwl-2000ap+
Tftp Server
tftp_server
Dir 100
dir-100
Dir 400
dir-400
Dkvm Ip8
dkvm-ip8
Dir 655
dir-655
Dcs 936l
dcs-936l
Mydlink+
mydlink+

CVEs (112)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2D Link
Dlink
3Di 614+
Di 624Di 704p
Apr 16, 2026
Dec 6, 2004
N/A· v4
N/A· v3
5.1 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router running firmware 2.60B2, and DI-624, allows remote attackers to inject arbitrary script or HTML via the...Show more
Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router running firmware 2.60B2, and DI-624, allows remote attackers to inject arbitrary script or HTML via the DHCP HOSTNAME option in a DHCP request.Show less
1D Link
1Dcs 900 Internet Camera
Apr 16, 2026
Aug 31, 2004
N/A· v4
N/A· v3
7.5 HIGH· v2
D-Link DCS-900 Internet Camera listens on UDP port 62976 for an IP address, which allows remote attackers to change the IP address of the camera via a UDP broadcast packet.
1D Link
3Di 604
Di 614+Di 624
Apr 16, 2026
Aug 6, 2004
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Integer signedness error in D-Link AirPlus DI-614+ running firmware 2.30 and earlier allows remote attackers to cause a denial of service (IP lease depletion) via a DHCP request with the LEASETIME option set to -1, which...Show more
Integer signedness error in D-Link AirPlus DI-614+ running firmware 2.30 and earlier allows remote attackers to cause a denial of service (IP lease depletion) via a DHCP request with the LEASETIME option set to -1, which makes the DHCP lease valid for thirteen or more years.Show less
1D Link
1Dwl 900ap+
Apr 16, 2026
Dec 31, 2003
N/A· v4
N/A· v3
10.0 HIGH· v2
D-Link wireless access point DWL-900AP+ 2.2, 2.3 and possibly 2.5 allows remote attackers to set factory default settings by upgrading the firmware using AirPlus Access Point Manager.
2D Link
Longshine Technologie
2Di 614+
Longshine Wireless Ethernet Access Point
Apr 16, 2026
Dec 31, 2003
N/A· v4
N/A· v3
5.0 MEDIUM· v2
TFTP server in Longshine Wireless Access Point (WAP) LCS-883R-AC-B, and in D-Link DI-614+ 2.0 which is based on it, allows remote attackers to obtain the WEP secret and gain administrator privileges by downloading the co...Show more
TFTP server in Longshine Wireless Access Point (WAP) LCS-883R-AC-B, and in D-Link DI-614+ 2.0 which is based on it, allows remote attackers to obtain the WEP secret and gain administrator privileges by downloading the configuration file (config.img) and other files without authentication.Show less
5Alloy
D LinkEusso+2 more
5Dwl 900ap+
Gl 2422ap SGl2422 Ap+2 more
Apr 16, 2026
Dec 31, 2002
N/A· v4
N/A· v3
5.0 MEDIUM· v2
GlobalSunTech Wireless Access Points (1) WISECOM GL2422AP-0T, and possibly OEM products such as (2) D-Link DWL-900AP+ B1 2.1 and 2.2, (3) ALLOY GL-2422AP-S, (4) EUSSO GL2422-AP, and (5) LINKSYS WAP11-V2.2, allow remote a...Show more
GlobalSunTech Wireless Access Points (1) WISECOM GL2422AP-0T, and possibly OEM products such as (2) D-Link DWL-900AP+ B1 2.1 and 2.2, (3) ALLOY GL-2422AP-S, (4) EUSSO GL2422-AP, and (5) LINKSYS WAP11-V2.2, allow remote attackers to obtain sensitive information like WEP keys, the administrator password, and the MAC filter via a "getsearch" request to UDP port 27155.Show less
2D Link
Linksys
4Befw11s4
Di 804Dl 704+1 more
Apr 16, 2026
Dec 31, 2002
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in the Embedded HTTP server, as used in (1) D-Link DI-804 4.68, Dl-704 V2.56b6, and Dl-704 V2.56b5 and (2) Linksys Etherfast BEFW11S4 Wireless AP + Cable/DSL Router 1.37.2 through 1.42.7 and Linksys WAP11...Show more
Buffer overflow in the Embedded HTTP server, as used in (1) D-Link DI-804 4.68, Dl-704 V2.56b6, and Dl-704 V2.56b5 and (2) Linksys Etherfast BEFW11S4 Wireless AP + Cable/DSL Router 1.37.2 through 1.42.7 and Linksys WAP11 1.3 and 1.4, allows remote attackers to cause a denial of service (crash) via a long header, as demonstrated using the Host header.Show less
1D Link
1Di 804
Apr 16, 2026
Oct 4, 2002
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The remote administration capability for the D-Link DI-804 router 4.68 allows remote attackers to bypass authentication and release DHCP addresses or obtain sensitive information via a direct web request to the pages (1)...Show more
The remote administration capability for the D-Link DI-804 router 4.68 allows remote attackers to bypass authentication and release DHCP addresses or obtain sensitive information via a direct web request to the pages (1) release.htm, (2) Device Status, or (3) Device Information.Show less
1D Link
1Dp 303
Apr 16, 2026
Oct 4, 2002
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The web server for D-Link DP-300 print server allows remote attackers to cause a denial of service (hang) via a large HTTP POST request.
1D Link
1Dwl 1000ap
Apr 16, 2026
Dec 21, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point uses a default SNMP community string of 'public' which allows remote attackers to gain sensitive information.
1D Link
1Dwl 1000ap
Apr 16, 2026
Dec 21, 2001
N/A· v4
N/A· v3
10.0 HIGH· v2
D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point stores the administrative password in plaintext in the default Management Information Base (MIB), which allows remote attackers to gain administrative priv...Show more
D-Link DWL-1000AP Firmware 3.2.28 #483 Wireless LAN Access Point stores the administrative password in plaintext in the default Management Information Base (MIB), which allows remote attackers to gain administrative privileges.Show less
1D Link
1Dl 704
Apr 16, 2026
Sep 6, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
D-Link DI-704 Internet Gateway firmware earlier than V2.56b6 allows remote attackers to cause a denial of service (reboot) via malformed IP datagram fragments.