D-Link Di-614 vulnerabilities
3 known vulnerabilities affecting d-link/di-614.
Total CVEs
3
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
MEDIUM3
Vulnerabilities
Page 1 of 1
CVE-2004-0615P4MEDIUMCVSS 5.1PoCv2.302004-12-06
CVE-2004-0615 [MEDIUM] CVE-2004-0615: Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI
Cross-site scripting (XSS) vulnerability in D-Link DI-614+ SOHO router running firmware 2.30, and DI-704 SOHO router running firmware 2.60B2, and DI-624, allows remote attackers to inject arbitrary script or HTML via the DHCP HOSTNAME option in a DHCP request.
nvd
CVE-2003-1264P4MEDIUMCVSS 5.0v2.02003-12-31
CVE-2003-1264 [MEDIUM] CVE-2003-1264: TFTP server in Longshine Wireless Access Point (WAP) LCS-883R-AC-B, and in D-Link DI-614+ 2.0 which
TFTP server in Longshine Wireless Access Point (WAP) LCS-883R-AC-B, and in D-Link DI-614+ 2.0 which is based on it, allows remote attackers to obtain the WEP secret and gain administrator privileges by downloading the configuration file (config.img) and other files without authentication.
nvd
CVE-2004-0661P4MEDIUMCVSS 5.0v2.302004-08-06
CVE-2004-0661 [MEDIUM] CVE-2004-0661: Integer signedness error in D-Link AirPlus DI-614+ running firmware 2.30 and earlier allows remote a
Integer signedness error in D-Link AirPlus DI-614+ running firmware 2.30 and earlier allows remote attackers to cause a denial of service (IP lease depletion) via a DHCP request with the LEASETIME option set to -1, which makes the DHCP lease valid for thirteen or more years.
nvd