Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

D-Link — Vulnerabilities & Security Advisories 825

Browse all 825 CVE security advisories affecting D-Link. AI-powered Chinese analysis, POCs, and references for each vulnerability.

D-Link manufactures networking hardware, primarily consumer-grade routers and wireless access points, serving as a critical infrastructure component for home and small business internet connectivity. The company’s product line has historically been plagued by significant security deficiencies, resulting in 760 recorded Common Vulnerabilities and Exposures. These flaws frequently involve remote code execution, cross-site scripting, and privilege escalation, often stemming from hardcoded credentials or unpatched firmware updates. A notable incident occurred in 2017 when a critical vulnerability allowed attackers to gain administrative control over millions of devices, facilitating large-scale botnet recruitment. The persistent lack of timely security patches and weak default configurations have established a pattern of neglect, leaving users exposed to persistent threats. This track record highlights systemic issues in the development and maintenance lifecycle of D-Link’s network equipment, necessitating rigorous user-side security measures.

Found 13 results / 825 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-90699 D-Link DWR-M920 formPinManageSetup sub_41E60C os command injection — DWR-M920 CWE-78 9.9 Critical 2026-09-14
CVE-2026-11341 D-Link DWR-M920 formIMEISetup sub_412DA0 os command injection — DWR-M920 CWE-78 6.3 Medium 2026-06-05
CVE-2026-11339 D-Link DWR-M920 formUSSDSetup sub_41CF20 command injection — DWR-M920 CWE-77 6.3 Medium 2026-06-05
CVE-2026-10878 D-Link DWR-M920 formSmsManage sub_41C8E8 command injection — DWR-M920 CWE-77 6.3 Medium 2026-06-05
CVE-2025-15193 D-Link DWR-M920 formParentControl sub_423848 buffer overflow — DWR-M920 CWE-120 8.8 High 2025-12-29
CVE-2025-15192 D-Link DWR-M920 formLtefotaUpgradeQuectel sub_415328 command injection — DWR-M920 CWE-77 6.3 Medium 2025-12-29
CVE-2025-15191 D-Link DWR-M920 formLtefotaUpgradeFibocom sub_4155B4 command injection — DWR-M920 CWE-77 6.3 Medium 2025-12-29
CVE-2025-15190 D-Link DWR-M920 formFilter sub_42261C stack-based overflow — DWR-M920 CWE-121 8.8 High 2025-12-29
CVE-2025-15189 D-Link DWR-M920 formDefRoute sub_464794 buffer overflow — DWR-M920 CWE-120 8.8 High 2025-12-29
CVE-2025-13553 D-Link DWR-M920 formPinManageSetup sub_41C7FC buffer overflow — DWR-M920 CWE-120 8.8 High 2025-11-23
CVE-2025-13306 D-Link DWR-M920/DWR-M921/DIR-822K/DIR-825M formDebugDiagnosticRun system command injection — DWR-M920 CWE-77 6.3 Medium 2025-11-17
CVE-2025-13305 D-Link DWR-M920/DWR-M921/DWR-M960/DIR-822K/DIR-825M formTracerouteDiagnosticRun buffer overflow — DWR-M920 CWE-120 8.8 High 2025-11-17
CVE-2025-13304 D-Link DWR-M920/DWR-M921/DWR-M960/DWR-M961/DIR-825M formPingDiagnosticRun buffer overflow — DWR-M920 CWE-120 8.8 High 2025-11-17

This page lists every published CVE security advisory associated with D-Link. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.