Product:

Dir\-820l_firmware

(Dlink)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 11
Date Id Summary Products Score Patch Annotated
2024-11-11 CVE-2024-51186 D-Link DIR-820L 1.05b03 was discovered to contain a remote code execution (RCE) vulnerability via the ping_addr parameter in the ping_v4 and ping_v6 functions. Dir\-820l_firmware N/A
2022-03-28 CVE-2022-26258 D-Link DIR-820L 1.05B03 was discovered to contain remote command execution (RCE) vulnerability via HTTP POST to get set ccp. Dir\-820l_firmware 9.8
2023-03-13 CVE-2023-25279 OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload. Dir\-820l_firmware 9.8
2023-03-13 CVE-2023-25283 A stack overflow vulnerability in D-Link DIR820LA1_FW106B02 allows attackers to cause a denial of service via the reserveDHCP_HostName_1.1.1.0 parameter to lan.asp. Dir\-820l_firmware 7.5
2017-09-21 CVE-2015-1187 The ping tool in multiple D-Link and TRENDnet devices allow remote attackers to execute arbitrary code via the ping_addr parameter to ping.ccp. Dir\-626l_firmware, Dir\-636l_firmware, Dir\-651_firmware, Dir\-808l_firmware, Dir\-810l_firmware, Dir\-820l_firmware, Dir\-826l_firmware, Dir\-830l_firmware, Dir\-836l_firmware, Tew\-651br_firmware, Tew\-652br_firmware, Tew\-711br_firmware, Tew\-731br_firmware, Tew\-810dr_firmware, Tew\-813dru_firmware 9.8
2022-02-17 CVE-2021-45382 A Remote Command Execution (RCE) vulnerability exists in all series H/W revisions D-link DIR-810L, DIR-820L/LW, DIR-826L, DIR-830L, and DIR-836L routers via the DDNS function in ncc2 binary file. Note: DIR-810L, DIR-820L, DIR-830L, DIR-826L, DIR-836L, all hardware revisions, have reached their End of Life ("EOL") /End of Service Life ("EOS") Life-Cycle and as such this issue will not be patched. Dir\-810l_firmware, Dir\-820l_firmware, Dir\-820lw_firmware, Dir\-826l_firmware, Dir\-830l_firmware, Dir\-836l_firmware 9.8
2023-03-15 CVE-2023-25282 A heap overflow vulnerability in D-Link DIR820LA1_FW106B02 allows attackers to cause a denial of service via the config.log_to_syslog and log_opt_dropPackets parameters to mydlink_api.ccp. Dir\-820l_firmware 6.5
2023-10-06 CVE-2023-44807 D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the cancelPing function. Dir\-820l_firmware 9.8
2023-10-16 CVE-2023-44808 D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the sub_4507CC function. Dir\-820l_firmware 9.8
2023-10-16 CVE-2023-44809 D-Link device DIR-820L 1.05B03 is vulnerable to Insecure Permissions. Dir\-820l_firmware 9.8