Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Dsl\-3782_firmware
(Dlink)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 17 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2025-01-22 | CVE-2024-56914 | D-Link DSL-3782 v1.01 is vulnerable to Buffer Overflow in /New_GUI/ParentalControl.asp. | Dsl\-3782_firmware | N/A | ||
2025-02-18 | CVE-2025-25891 | A buffer overflow vulnerability was discovered in D-Link DSL-3782 v1.01, triggered by the destination, netmask and gateway parameters. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet. | Dsl\-3782_firmware | N/A | ||
2025-02-18 | CVE-2025-25892 | A buffer overflow vulnerability was discovered in D-Link DSL-3782 v1.01 via the sstartip, sendip, dstartip, and dendip parameters. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet. | Dsl\-3782_firmware | N/A | ||
2025-02-18 | CVE-2025-25893 | An OS command injection vulnerability was discovered in D-Link DSL-3782 v1.01 via the inIP, insPort, inePort, exsPort, exePort, and protocol parameters. This vulnerability allows attackers to execute arbitrary operating system (OS) commands via a crafted packet. | Dsl\-3782_firmware | N/A | ||
2025-02-18 | CVE-2025-25894 | An OS command injection vulnerability was discovered in D-Link DSL-3782 v1.01 via the samba_wg and samba_nbn parameters. This vulnerability allows attackers to execute arbitrary operating system (OS) commands via a crafted packet. | Dsl\-3782_firmware | N/A | ||
2025-02-18 | CVE-2025-25895 | An OS command injection vulnerability was discovered in D-Link DSL-3782 v1.01 via the public_type parameter. This vulnerability allows attackers to execute arbitrary operating system (OS) commands via a crafted packet. | Dsl\-3782_firmware | N/A | ||
2025-02-18 | CVE-2025-25896 | A buffer overflow vulnerability was discovered in D-Link DSL-3782 v1.01 via the destination, netmask, and gateway parameters. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet. | Dsl\-3782_firmware | N/A | ||
2023-04-12 | CVE-2023-27216 | An issue found in D-Link DSL-3782 v.1.03 allows remote authenticated users to execute arbitrary code as root via the network settings page. | Dsl\-3782_firmware | 8.8 | ||
2021-09-09 | CVE-2021-40284 | D-Link DSL-3782 EU v1.01:EU v1.03 is affected by a buffer overflow which can cause a denial of service. This vulnerability exists in the web interface "/cgi-bin/New_GUI/Igmp.asp". Authenticated remote attackers can trigger this vulnerability by sending a long string in parameter 'igmpsnoopEnable' via an HTTP request. | Dsl\-3782_firmware | 6.5 | ||
2022-07-29 | CVE-2022-34527 | D-Link DSL-3782 v1.03 and below was discovered to contain a command injection vulnerability via the function byte_4C0160. | Dsl\-3782_firmware | 8.8 |