Dlink Dap-1325 Firmware vulnerabilities
37 known vulnerabilities affecting dlink/dap-1325_firmware.
Total CVEs
37
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH36MEDIUM1
Vulnerabilities
Page 1 of 2
CVE-2023-41201P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41201 [HIGH] CWE-78 CVE-2023-41201: D-Link DAP-1325 HNAP SetSetupWizardStatus Enabled Command Injection Remote Code Execution Vulnerabil
D-Link DAP-1325 HNAP SetSetupWizardStatus Enabled Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of a req
nvd
CVE-2023-41196P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41196 [HIGH] CWE-78 CVE-2023-41196: D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticAddress Command Injection Remote Code Execution
D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticAddress Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handli
nvd
CVE-2023-41189P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41189 [HIGH] CWE-78 CVE-2023-41189: D-Link DAP-1325 HNAP SetAPLanSettings Gateway Command Injection Remote Code Execution Vulnerability.
D-Link DAP-1325 HNAP SetAPLanSettings Gateway Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of a request
nvd
CVE-2023-41197P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41197 [HIGH] CWE-78 CVE-2023-41197: D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticDefaultGateway Command Injection Remote Code Ex
D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticDefaultGateway Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the
nvd
CVE-2023-41194P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41194 [HIGH] CWE-78 CVE-2023-41194: D-Link DAP-1325 HNAP SetAPLanSettings SubnetMask Command Injection Remote Code Execution Vulnerabili
D-Link DAP-1325 HNAP SetAPLanSettings SubnetMask Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of a requ
nvd
CVE-2023-41198P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41198 [HIGH] CWE-78 CVE-2023-41198: D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticDNS1 Command Injection Remote Code Execution Vu
D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticDNS1 Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling
nvd
CVE-2023-41193P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41193 [HIGH] CWE-78 CVE-2023-41193: D-Link DAP-1325 HNAP SetAPLanSettings SecondaryDNS Command Injection Remote Code Execution Vulnerabi
D-Link DAP-1325 HNAP SetAPLanSettings SecondaryDNS Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of a re
nvd
CVE-2023-41191P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41191 [HIGH] CWE-78 CVE-2023-41191: D-Link DAP-1325 HNAP SetAPLanSettings Mode Command Injection Remote Code Execution Vulnerability. Th
D-Link DAP-1325 HNAP SetAPLanSettings Mode Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of a request pa
nvd
CVE-2023-41188P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41188 [HIGH] CWE-78 CVE-2023-41188: D-Link DAP-1325 HNAP SetAPLanSettings DeviceName Command Injection Remote Code Execution Vulnerabili
D-Link DAP-1325 HNAP SetAPLanSettings DeviceName Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of a requ
nvd
CVE-2023-41190P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41190 [HIGH] CWE-78 CVE-2023-41190: D-Link DAP-1325 HNAP SetAPLanSettings IPAddr Command Injection Remote Code Execution Vulnerability.
D-Link DAP-1325 HNAP SetAPLanSettings IPAddr Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of a request p
nvd
CVE-2023-41200P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41200 [HIGH] CWE-78 CVE-2023-41200: D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticPrefixLength Command Injection Remote Code Exec
D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticPrefixLength Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the h
nvd
CVE-2023-41192P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41192 [HIGH] CWE-78 CVE-2023-41192: D-Link DAP-1325 HNAP SetAPLanSettings PrimaryDNS Command Injection Remote Code Execution Vulnerabili
D-Link DAP-1325 HNAP SetAPLanSettings PrimaryDNS Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of a requ
nvd
CVE-2023-41195P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41195 [HIGH] CWE-78 CVE-2023-41195: D-Link DAP-1325 HNAP SetHostIPv6Settings IPv6Mode Command Injection Remote Code Execution Vulnerabil
D-Link DAP-1325 HNAP SetHostIPv6Settings IPv6Mode Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of a req
nvd
CVE-2023-41199P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41199 [HIGH] CWE-78 CVE-2023-41199: D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticDNS2 Command Injection Remote Code Execution Vu
D-Link DAP-1325 HNAP SetHostIPv6StaticSettings StaticDNS2 Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling
nvd
CVE-2023-44403P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-44403 [HIGH] CWE-78 CVE-2023-44403: D-Link DAP-1325 HNAP SetWLanRadioSettings Channel Command Injection Remote Code Execution Vulnerabil
D-Link DAP-1325 HNAP SetWLanRadioSettings Channel Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of a req
nvd
CVE-2023-41203P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41203 [HIGH] CWE-121 CVE-2023-41203: D-Link DAP-1325 SetAPLanSettings PrimaryDNS Stack-based Buffer Overflow Remote Code Execution Vulner
D-Link DAP-1325 SetAPLanSettings PrimaryDNS Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the handling of
nvd
CVE-2023-41207P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41207 [HIGH] CWE-121 CVE-2023-41207: D-Link DAP-1325 SetHostIPv6StaticSettings StaticAddress Stack-based Buffer Overflow Remote Code Exec
D-Link DAP-1325 SetHostIPv6StaticSettings StaticAddress Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the
nvd
CVE-2023-41214P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41214 [HIGH] CWE-121 CVE-2023-41214: D-Link DAP-1325 setDhcpAssignRangeUpdate lan_ipaddr Stack-based Buffer Overflow Remote Code Executio
D-Link DAP-1325 setDhcpAssignRangeUpdate lan_ipaddr Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the hand
nvd
CVE-2023-41213P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41213 [HIGH] CWE-121 CVE-2023-41213: D-Link DAP-1325 setDhcpAssignRangeUpdate lan_ipaddr Stack-based Buffer Overflow Remote Code Executio
D-Link DAP-1325 setDhcpAssignRangeUpdate lan_ipaddr Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the hand
nvd
CVE-2023-41211P2HIGHCVSS 8.8fixed in 1.09b032024-05-03
CVE-2023-41211 [HIGH] CWE-121 CVE-2023-41211: D-Link DAP-1325 SetHostIPv6StaticSettings StaticPrefixLength Stack-based Buffer Overflow Remote Code
D-Link DAP-1325 SetHostIPv6StaticSettings StaticPrefixLength Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability.
The specific flaw exists within
nvd
1 / 2Next →