Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Di\-7200g_firmware
(Dlink)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 15 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2023-10-16 | CVE-2023-45576 | Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1 v.23.08.23D1 and before allows a remote attacker to execute arbitrary code via the remove_ext_proto/remove_ext_port parameter of the upnp_ctrl.asp function. | Di\-7003g_firmware, Di\-7100g\+_firmware, Di\-7100g_firmware, Di\-7200g\+_firmware, Di\-7200g_firmware, Di\-7300g\+_firmware, Di\-7400g\+_firmware | 9.8 | ||
2023-10-16 | CVE-2023-45577 | Stack Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1 v.23.08.23D1 and before allows a remote attacker to execute arbitrary code via the wanid parameter of the H5/speedlimit.data function. | Di\-7003g_firmware, Di\-7100g\+_firmware, Di\-7100g_firmware, Di\-7200g\+_firmware, Di\-7200g_firmware, Di\-7300g\+_firmware, Di\-7400g\+_firmware | 9.8 | ||
2023-10-16 | CVE-2023-45578 | Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1 v.23.08.23D1 and before allows a remote attacker to execute arbitrary code via the pap_en/chap_en parameter of the pppoe_base.asp function. | Di\-7003g_firmware, Di\-7100g\+_firmware, Di\-7100g_firmware, Di\-7200g\+_firmware, Di\-7200g_firmware, Di\-7300g\+_firmware, Di\-7400g\+_firmware | 9.8 | ||
2023-10-16 | CVE-2023-45579 | Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and before, DI-7100GV2.D1 v.23.08.23D1, DI-7200G+V2.D1 v.23.08.23D1 and before, DI-7200GV2.E1 v.23.08.23E1 and before, DI-7300G+V2.D1 v.23.08.23D1, and DI-7400G+V2.D1 v.23.08.23D1 and before allows a remote attacker to execute arbitrary code via the ip/type parameter of the jingx.asp function. | Di\-7003g_firmware, Di\-7100g\+_firmware, Di\-7100g_firmware, Di\-7200g\+_firmware, Di\-7200g_firmware, Di\-7300g\+_firmware, Di\-7400g\+_firmware | 9.8 | ||
2023-09-20 | CVE-2023-43196 | D-Link DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the zn_jb parameter in the arp_sys.asp function. | Di\-7200g_firmware | 9.8 | ||
2023-09-20 | CVE-2023-43197 | D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the fn parameter in the tgfile.asp function. | Di\-7200g_firmware | 9.8 | ||
2023-09-20 | CVE-2023-43198 | D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the popupId parameter in the H5/hi_block.asp function. | Di\-7200g_firmware | 9.8 | ||
2023-09-20 | CVE-2023-43199 | D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the prev parameter in the H5/login.cgi function. | Di\-7200g_firmware | 9.8 | ||
2023-09-20 | CVE-2023-43200 | D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the id parameter in the yyxz.data function. | Di\-7200g_firmware | 9.8 | ||
2023-09-20 | CVE-2023-43201 | D-Link device DI-7200GV2.E1 v21.04.09E1 was discovered to contain a stack overflow via the hi_up parameter in the qos_ext.asp function. | Di\-7200g_firmware | 9.8 |