Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

D-Link — Vulnerabilities & Security Advisories 825

Browse all 825 CVE security advisories affecting D-Link. AI-powered Chinese analysis, POCs, and references for each vulnerability.

D-Link manufactures networking hardware, primarily consumer-grade routers and wireless access points, serving as a critical infrastructure component for home and small business internet connectivity. The company’s product line has historically been plagued by significant security deficiencies, resulting in 760 recorded Common Vulnerabilities and Exposures. These flaws frequently involve remote code execution, cross-site scripting, and privilege escalation, often stemming from hardcoded credentials or unpatched firmware updates. A notable incident occurred in 2017 when a critical vulnerability allowed attackers to gain administrative control over millions of devices, facilitating large-scale botnet recruitment. The persistent lack of timely security patches and weak default configurations have established a pattern of neglect, leaving users exposed to persistent threats. This track record highlights systemic issues in the development and maintenance lifecycle of D-Link’s network equipment, necessitating rigorous user-side security measures.

CVE ID Title CVSS Severity Published
CVE-2026-4205 D-Link DNS-1550-04 app_mgr.cgi FTP_Server_BlockIP_Del command injection — DNS-120 CWE-77 6.3 Medium 2026-03-16
CVE-2026-4204 D-Link DNS-1550-04 gui_mgr.cgi cgi_mycloud_auto_downlaod command injection — DNS-120 CWE-77 6.3 Medium 2026-03-16
CVE-2026-4203 D-Link DNS-1550-04 network_mgr.cgi cgi_dhcpd command injection — DNS-120 CWE-77 6.3 Medium 2026-03-16
CVE-2026-4197 D-Link DNS-1550-04 download_mgr.cgi RSS_Item_List command injection — DNS-120 CWE-77 6.3 Medium 2026-03-15
CVE-2026-4196 D-Link DNS-1550-04 remote_backup.cgi cgi_set_rsync_server command injection — DNS-120 CWE-77 6.3 Medium 2026-03-15
CVE-2026-4195 D-Link DNS-1550-04 wizard_mgr.cgi command injection — DNS-120 CWE-77 6.3 Medium 2026-03-15
CVE-2026-4194 D-Link DNS-1550-04 system_mgr.cgi cgi_set_wto access control — DNS-120 CWE-284 7.3 High 2026-03-15
CVE-2026-4193 D-Link DIR-823G goahead UpdateClientInfo access control — DIR-823G CWE-284 7.3 High 2026-03-15
CVE-2026-4188 D-Link DIR-619L boa formSchedule stack-based overflow — DIR-619L CWE-121 8.8 High 2026-03-15
CVE-2026-4184 D-Link DIR-816 goahead form2Wl5BasicSetup.cgi stack-based overflow — DIR-816 CWE-121 9.8 Critical 2026-03-15
CVE-2026-4183 D-Link DIR-816 goahead form2WlanBasicSetup.cgi stack-based overflow — DIR-816 CWE-121 9.8 Critical 2026-03-15
CVE-2026-4182 D-Link DIR-816 goahead form2Wl5RepeaterStep2.cgi stack-based overflow — DIR-816 CWE-121 9.8 Critical 2026-03-15
CVE-2026-4181 D-Link DIR-816 goahead form2RepeaterStep2.cgi stack-based overflow — DIR-816 CWE-121 9.8 Critical 2026-03-15
CVE-2026-4180 D-Link DIR-816 goahead redirect.asp access control — DIR-816 CWE-284 7.3 High 2026-03-15
CVE-2026-3978 D-Link DIR-513 formEasySetupWizard3 stack-based overflow — DIR-513 CWE-121 8.8 High 2026-03-12
CVE-2026-3485 D-Link DIR-868L SSDP Service sub_1BF84 os command injection — DIR-868L CWE-78 9.8 Critical 2026-03-03
CVE-2026-2962 D-Link DWR-M960 Scheduled Reboot Configuration Endpoint formDateReboot sub_460F30 stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-23
CVE-2026-2961 D-Link DWR-M960 VPN Configuration Endpoint formVpnConfigSetup sub_4196C4 stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-23
CVE-2026-2960 D-Link DWR-M960 formDhcpv6s sub_468D64 stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-23
CVE-2026-2959 D-Link DWR-M960 formNewSchedule sub_44E0F8 stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-22
CVE-2026-2958 D-Link DWR-M960 formWsc sub_457C5C stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-22
CVE-2026-2929 D-Link DWR-M960 Wireless Access Control Endpoint formWlAc sub_453140 stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-22
CVE-2026-2928 D-Link DWR-M960 WLAN Encryption Configuration Endpoint formWlEncrypt sub_452CCC stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-22
CVE-2026-2927 D-Link DWR-M960 Operation Mode Configuration Endpoint formOpMode sub_462590 stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-22
CVE-2026-2926 D-Link DWR-M960 LTE Configuration Endpoint formLteSetup sub_4237AC stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-22
CVE-2026-2925 D-Link DWR-M960 Bridge VLAN Configuration Endpoint formBridgeVlan sub_42B5A0 stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-22
CVE-2026-2885 D-Link DWR-M960 formIpv6Setup sub_469104 stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-21
CVE-2026-2884 D-Link DWR-M960 WAN Interface Setting formWanConfigSetup sub_41914C stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-21
CVE-2026-2883 D-Link DWR-M960 formIpQoS sub_427D74 stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-21
CVE-2026-2882 D-Link DWR-M960 formDosCfg sub_46385C stack-based overflow — DWR-M960 CWE-121 8.8 High 2026-02-21

This page lists every published CVE security advisory associated with D-Link. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.