Show filters
921 Total Results
Displaying 11-20 of 921
Sort by:
Attacker Value
Unknown

CVE-2024-11960

Disclosure Date: November 28, 2024 (last updated December 21, 2024)
A vulnerability was found in D-Link DIR-605L 2.13B01. It has been declared as critical. This vulnerability affects the function formSetPortTr of the file /goform/formSetPortTr. The manipulation of the argument curTime leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Attacker Value
Unknown

CVE-2024-11959

Disclosure Date: November 28, 2024 (last updated December 21, 2024)
A vulnerability was found in D-Link DIR-605L 2.13B01. It has been classified as critical. This affects the function formResetStatistic of the file /goform/formResetStatistic. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Attacker Value
Unknown

CVE-2024-52755

Disclosure Date: November 21, 2024 (last updated January 05, 2025)
D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the host_ip parameter in the ipsec_road_asp function.
Attacker Value
Unknown

CVE-2024-51151

Disclosure Date: November 21, 2024 (last updated January 05, 2025)
D-Link DI-8200 16.07.26A1 is vulnerable to remote command execution in the msp_info_htm function via the flag parameter and cmd parameter.
Attacker Value
Unknown

CVE-2024-52757

Disclosure Date: November 20, 2024 (last updated January 05, 2025)
D-LINK DI-8003 v16.07.16A1 was discovered to contain a buffer overflow via the notify parameter in the arp_sys_asp function.
Attacker Value
Unknown

CVE-2024-52754

Disclosure Date: November 20, 2024 (last updated January 05, 2025)
D-LINK DI-8003 v16.07.16A1 was discovered to contain a buffer overflow via the fn parameter in the tgfile_htm function.
Attacker Value
Unknown

CVE-2024-52759

Disclosure Date: November 19, 2024 (last updated November 21, 2024)
D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the ip parameter in the ip_position_asp function.
Attacker Value
Unknown

CVE-2024-28731

Disclosure Date: November 12, 2024 (last updated January 05, 2025)
Cross Site Request Forgery vulnerability in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME allows a local attacker to obtain sensitive information via the Port forwarding option.
Attacker Value
Unknown

CVE-2024-28730

Disclosure Date: November 12, 2024 (last updated January 05, 2025)
Cross Site Scripting vulnerability in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME allows a local attacker to obtain sensitive information via the file upload feature of the VPN configuration module.
Attacker Value
Unknown

CVE-2024-28729

Disclosure Date: November 12, 2024 (last updated January 05, 2025)
An issue in DLink DWR 2000M 5G CPE With Wifi 6 Ax1800 and Dlink DWR 5G CPE DWR-2000M_1.34ME allows a local attacker to execute arbitrary code via a crafted request.