D-Link Dap-1325 vulnerabilities

37 known vulnerabilities affecting d-link/dap-1325.

Total CVEs
37
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH36MEDIUM1

Vulnerabilities

Page 2 of 2
CVE-2023-41208HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41208 [HIGH] CWE-121 CVE-2023-41208: D-Link DAP-1325 SetHostIPv6StaticSettings StaticDefaultGateway Stack-based Buffer Overflow Remote Co D-Link DAP-1325 SetHostIPv6StaticSettings StaticDefaultGateway Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists with
cvelistv5nvd
CVE-2023-44409HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-44409 [HIGH] CWE-121 CVE-2023-44409: D-Link DAP-1325 SetSetupWizardStatus Enabled Stack-based Buffer Overflow Remote Code Execution Vulne D-Link DAP-1325 SetSetupWizardStatus Enabled Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of
cvelistv5nvd
CVE-2023-41191HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41191 [HIGH] CWE-78 CVE-2023-41191: D-Link DAP-1325 HNAP SetAPLanSettings Mode Command Injection Remote Code Execution Vulnerability. Th D-Link DAP-1325 HNAP SetAPLanSettings Mode Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of a request pa
cvelistv5nvd
CVE-2023-41194HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41194 [HIGH] CWE-78 CVE-2023-41194: D-Link DAP-1325 HNAP SetAPLanSettings SubnetMask Command Injection Remote Code Execution Vulnerabili D-Link DAP-1325 HNAP SetAPLanSettings SubnetMask Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of a requ
cvelistv5nvd
CVE-2023-41198HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41198 [HIGH] CWE-78 CVE-2023-41198: D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticDNS1 Command Injection Remote Code Execution Vu D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticDNS1 Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling
cvelistv5nvd
CVE-2023-41193HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41193 [HIGH] CWE-78 CVE-2023-41193: D-Link DAP-1325 HNAP SetAPLanSettings SecondaryDNS Command Injection Remote Code Execution Vulnerabi D-Link DAP-1325 HNAP SetAPLanSettings SecondaryDNS Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of a re
cvelistv5nvd
CVE-2023-41206HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41206 [HIGH] CWE-121 CVE-2023-41206: D-Link DAP-1325 SetHostIPv6Settings IPv6Mode Stack-based Buffer Overflow Remote Code Execution Vulne D-Link DAP-1325 SetHostIPv6Settings IPv6Mode Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of
cvelistv5nvd
CVE-2023-41205HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41205 [HIGH] CWE-121 CVE-2023-41205: D-Link DAP-1325 SetAPLanSettings SubnetMask Stack-based Buffer Overflow Remote Code Execution Vulner D-Link DAP-1325 SetAPLanSettings SubnetMask Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of
cvelistv5nvd
CVE-2023-41212HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41212 [HIGH] CWE-121 CVE-2023-41212: D-Link DAP-1325 SetTriggerAPValidate Key Stack-based Buffer Overflow Remote Code Execution Vulnerabi D-Link DAP-1325 SetTriggerAPValidate Key Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of XML
cvelistv5nvd
CVE-2023-41201HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41201 [HIGH] CWE-78 CVE-2023-41201: D-Link DAP-1325 HNAP SetSetupWizardStatus Enabled Command Injection Remote Code Execution Vulnerabil D-Link DAP-1325 HNAP SetSetupWizardStatus Enabled Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of a req
cvelistv5nvd
CVE-2023-44405HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-44405 [HIGH] CWE-121 CVE-2023-44405: D-Link DAP-1325 get_value_of_key Stack-based Buffer Overflow Remote Code Execution Vulnerability. Th D-Link DAP-1325 get_value_of_key Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of XML data pr
cvelistv5nvd
CVE-2023-41188HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41188 [HIGH] CWE-78 CVE-2023-41188: D-Link DAP-1325 HNAP SetAPLanSettings DeviceName Command Injection Remote Code Execution Vulnerabili D-Link DAP-1325 HNAP SetAPLanSettings DeviceName Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of a requ
cvelistv5nvd
CVE-2023-41190HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41190 [HIGH] CWE-78 CVE-2023-41190: D-Link DAP-1325 HNAP SetAPLanSettings IPAddr Command Injection Remote Code Execution Vulnerability. D-Link DAP-1325 HNAP SetAPLanSettings IPAddr Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of a request p
cvelistv5nvd
CVE-2023-41199HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41199 [HIGH] CWE-78 CVE-2023-41199: D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticDNS2 Command Injection Remote Code Execution Vu D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticDNS2 Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling
cvelistv5nvd
CVE-2023-41202HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41202 [HIGH] CWE-121 CVE-2023-41202: D-Link DAP-1325 SetAPLanSettings Mode Stack-based Buffer Overflow Remote Code Execution Vulnerabilit D-Link DAP-1325 SetAPLanSettings Mode Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of XML da
cvelistv5nvd
CVE-2023-41195HIGHCVSS 8.8v1.07b012024-05-03
CVE-2023-41195 [HIGH] CWE-78 CVE-2023-41195: D-Link DAP-1325 HNAP SetHostIPv6Settings IPv6Mode Command Injection Remote Code Execution Vulnerabil D-Link DAP-1325 HNAP SetHostIPv6Settings IPv6Mode Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of a req
cvelistv5nvd
CVE-2023-41186MEDIUMCVSS 6.5v1.07b012024-05-03
CVE-2023-41186 [MEDIUM] CWE-306 CVE-2023-41186: D-Link DAP-1325 CGI Missing Authentication Information Disclosure Vulnerability. This vulnerability D-Link DAP-1325 CGI Missing Authentication Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to access various functionality on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the CGI interfa
cvelistv5nvd