CVE-2023-26613
- EPSS 68.95%
- Veröffentlicht 29.06.2023 16:15:09
- Zuletzt bearbeitet 21.11.2024 07:51:51
An OS command injection vulnerability in D-Link DIR-823G firmware version 1.02B05 allows unauthorized attackers to execute arbitrary operating system commands via a crafted GET request to EXCU_SHELL.
CVE-2023-26612
- EPSS 2.08%
- Veröffentlicht 29.06.2023 16:15:09
- Zuletzt bearbeitet 21.11.2024 07:51:51
D-Link DIR-823G firmware version 1.02B05 has a buffer overflow vulnerability, which originates from the HostName field in SetParentsControlInfo.
CVE-2023-26615
- EPSS 0.08%
- Veröffentlicht 28.06.2023 15:15:10
- Zuletzt bearbeitet 21.11.2024 07:51:51
D-Link DIR-823G firmware version 1.02B05 has a password reset vulnerability, which originates from the SetMultipleActions API, allowing unauthorized attackers to reset the WEB page management password.
CVE-2023-29665
- EPSS 1.91%
- Veröffentlicht 17.04.2023 16:15:09
- Zuletzt bearbeitet 06.02.2025 17:15:17
D-Link DIR823G_V1.0.2B05 was discovered to contain a stack overflow via the NewPassword parameters in SetPasswdSettings.
CVE-2022-44808
- EPSS 5.64%
- Veröffentlicht 22.11.2022 15:15:13
- Zuletzt bearbeitet 25.04.2025 21:15:35
A command injection vulnerability has been found on D-Link DIR-823G devices with firmware version 1.02B03 that allows an attacker to execute arbitrary operating system commands through well-designed /HNAP1 requests. Before the HNAP API function can p...
CVE-2022-44201
- EPSS 0.69%
- Veröffentlicht 22.11.2022 15:15:12
- Zuletzt bearbeitet 29.04.2025 04:15:29
D-Link DIR823G 1.02B05 is vulnerable to Commad Injection.
CVE-2022-43109
- EPSS 0.89%
- Veröffentlicht 03.11.2022 14:15:33
- Zuletzt bearbeitet 05.05.2025 13:15:48
D-Link DIR-823G v1.0.2 was found to contain a command injection vulnerability in the function SetNetworkTomographySettings. This vulnerability allows attackers to execute arbitrary commands via a crafted packet.
CVE-2021-43474
- EPSS 3.37%
- Veröffentlicht 07.04.2022 22:15:07
- Zuletzt bearbeitet 21.11.2024 06:29:17
An Access Control vulnerability exists in D-Link DIR-823G REVA1 1.02B05 (Lastest) via any parameter in the HNAP1 function
CVE-2020-25368
- EPSS 41.54%
- Veröffentlicht 04.11.2021 11:15:07
- Zuletzt bearbeitet 21.11.2024 05:17:54
A command injection vulnerability was discovered in the HNAP1 protocol in D-Link DIR-823G devices with firmware V1.0.2B05. An attacker is able to execute arbitrary web scripts via shell metacharacters in the PrivateLogin field to Login.
CVE-2020-25366
- EPSS 0.55%
- Veröffentlicht 04.11.2021 11:15:07
- Zuletzt bearbeitet 21.11.2024 05:17:54
An issue in the component /cgi-bin/upload_firmware.cgi of D-Link DIR-823G REVA1 1.02B05 allows attackers to cause a denial of service (DoS) via unspecified vectors.