Show filters
12 Total Results
Displaying 1-10 of 12
Sort by:
Attacker Value
Unknown
CVE-2023-39637
Disclosure Date: September 12, 2023 (last updated October 08, 2023)
D-Link DIR-816 A2 1.10 B05 was discovered to contain a command injection vulnerability via the component /goform/Diagnosis.
0
Attacker Value
Unknown
CVE-2022-42999
Disclosure Date: October 26, 2022 (last updated December 22, 2024)
D-Link DIR-816 A2 1.10 B05 was discovered to contain multiple command injection vulnerabilities via the admuser and admpass parameters at /goform/setSysAdm.
0
Attacker Value
Unknown
CVE-2022-42998
Disclosure Date: October 26, 2022 (last updated December 22, 2024)
D-Link DIR-816 A2 1.10 B05 was discovered to contain a stack overflow via the srcip parameter at /goform/form2IPQoSTcAdd.
0
Attacker Value
Unknown
CVE-2022-43003
Disclosure Date: October 26, 2022 (last updated December 22, 2024)
D-Link DIR-816 A2 1.10 B05 was discovered to contain a stack overflow via the pskValue parameter in the setRepeaterSecurity function.
0
Attacker Value
Unknown
CVE-2022-43000
Disclosure Date: October 26, 2022 (last updated December 22, 2024)
D-Link DIR-816 A2 1.10 B05 was discovered to contain a stack overflow via the wizardstep4_pskpwd parameter at /goform/form2WizardStep4.
0
Attacker Value
Unknown
CVE-2022-43002
Disclosure Date: October 26, 2022 (last updated December 22, 2024)
D-Link DIR-816 A2 1.10 B05 was discovered to contain a stack overflow via the wizardstep54_pskpwd parameter at /goform/form2WizardStep54.
0
Attacker Value
Unknown
CVE-2022-43001
Disclosure Date: October 26, 2022 (last updated December 22, 2024)
D-Link DIR-816 A2 1.10 B05 was discovered to contain a stack overflow via the pskValue parameter in the setSecurity function.
0
Attacker Value
Unknown
CVE-2021-27113
Disclosure Date: April 14, 2021 (last updated February 22, 2025)
An issue was discovered in D-Link DIR-816 A2 1.10 B05 devices. An HTTP request parameter is used in command string construction within the handler function of the /goform/addRouting route. This could lead to Command Injection via Shell Metacharacters.
0
Attacker Value
Unknown
CVE-2021-27114
Disclosure Date: April 14, 2021 (last updated February 22, 2025)
An issue was discovered in D-Link DIR-816 A2 1.10 B05 devices. Within the handler function of the /goform/addassignment route, a very long text entry for the"'s_ip" and "s_mac" fields could lead to a Stack-Based Buffer Overflow and overwrite the return address.
0
Attacker Value
Unknown
CVE-2021-26810
Disclosure Date: March 30, 2021 (last updated February 22, 2025)
D-link DIR-816 A2 v1.10 is affected by a remote code injection vulnerability. An HTTP request parameter can be used in command string construction in the handler function of the /goform/dir_setWanWifi, which can lead to command injection via shell metacharacters in the statuscheckpppoeuser parameter.
0