D-Link Dap-1360 vulnerabilities
12 known vulnerabilities affecting d-link/dap-1360.
Total CVEs
12
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH10MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2023-32145HIGHCVSS 8.8v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32145 [HIGH] CWE-259 CVE-2023-32145: D-Link DAP-1360 Hardcoded Credentials Authentication Bypass Vulnerability. This vulnerability allows
D-Link DAP-1360 Hardcoded Credentials Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the processing of login requests to the web-based u
cvelistv5nvd
CVE-2023-32141HIGHCVSS 8.8v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32141 [HIGH] CWE-121 CVE-2023-32141: D-Link DAP-1360 webproc WEB_DisplayPage Stack-based Buffer Overflow Remote Code Execution Vulnerabil
D-Link DAP-1360 webproc WEB_DisplayPage Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of requ
cvelistv5nvd
CVE-2023-32140HIGHCVSS 7.5v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32140 [HIGH] CWE-122 CVE-2023-32140: D-Link DAP-1360 webproc var:sys_Token Heap-based Buffer Overflow Remote Code Execution Vulnerability
D-Link DAP-1360 webproc var:sys_Token Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling requests t
cvelistv5nvd
CVE-2023-32138HIGHCVSS 8.8v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32138 [HIGH] CWE-122 CVE-2023-32138: D-Link DAP-1360 webproc Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnera
D-Link DAP-1360 webproc Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of requests to the /cgi-
cvelistv5nvd
CVE-2023-32146HIGHCVSS 8.8v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32146 [HIGH] CWE-121 CVE-2023-32146: D-Link DAP-1360 Multiple Parameters Stack-Based Buffer Overflow Remote Code Execution Vulnerability.
D-Link DAP-1360 Multiple Parameters Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the /cgi-bin/webproc end
cvelistv5nvd
CVE-2023-32144HIGHCVSS 8.8v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32144 [HIGH] CWE-121 CVE-2023-32144: D-Link DAP-1360 webproc COMM_MakeCustomMsg Stack-based Buffer Overflow Remote Code Execution Vulnera
D-Link DAP-1360 webproc COMM_MakeCustomMsg Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of r
cvelistv5nvd
CVE-2023-32142HIGHCVSS 8.8v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32142 [HIGH] CWE-121 CVE-2023-32142: D-Link DAP-1360 webproc var:page Stack-based Buffer Overflow Remote Code Execution Vulnerability. Th
D-Link DAP-1360 webproc var:page Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of requests to
cvelistv5nvd
CVE-2023-32143HIGHCVSS 8.8v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32143 [HIGH] CWE-197 CVE-2023-32143: D-Link DAP-1360 webupg UPGCGI_CheckAuth Numeric Truncation Remote Code Execution Vulnerability. This
D-Link DAP-1360 webupg UPGCGI_CheckAuth Numeric Truncation Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of requests to t
cvelistv5nvd
CVE-2023-32139HIGHCVSS 8.8v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32139 [HIGH] CWE-121 CVE-2023-32139: D-Link DAP-1360 webproc Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulner
D-Link DAP-1360 webproc Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling requests to the /cgi-bi
cvelistv5nvd
CVE-2023-32136HIGHCVSS 8.8v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32136 [HIGH] CWE-121 CVE-2023-32136: D-Link DAP-1360 webproc var:menu Stack-based Buffer Overflow Remote Code Execution Vulnerability. Th
D-Link DAP-1360 webproc var:menu Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling requests to th
cvelistv5nvd
CVE-2023-32137MEDIUMCVSS 6.5v6.14B01 EU HOTFIX2024-05-03
CVE-2023-32137 [MEDIUM] CWE-22 CVE-2023-32137: D-Link DAP-1360 webproc WEB_DisplayPage Directory Traversal Information Disclosure Vulnerability. Th
D-Link DAP-1360 webproc WEB_DisplayPage Directory Traversal Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DAP-1360 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of re
cvelistv5nvd
CVE-2024-0717MEDIUMCVSS 5.3v202401122024-01-19
CVE-2024-0717 [MEDIUM] CWE-200 CVE-2024-0717: A vulnerability classified as critical was found in D-Link DAP-1360, DIR-300, DIR-615, DIR-615GF, DI
A vulnerability classified as critical was found in D-Link DAP-1360, DIR-300, DIR-615, DIR-615GF, DIR-615S, DIR-615T, DIR-620, DIR-620S, DIR-806A, DIR-815, DIR-815AC, DIR-815S, DIR-816, DIR-820, DIR-822, DIR-825, DIR-825AC, DIR-825ACF, DIR-825ACG1, DIR-841, DIR-842, DIR-842S, DIR-843, DIR-853, DIR-878, DIR-882, DIR-1210, DIR-1260, DIR-2150, DIR-X1530,
cvelistv5nvd