Dlink Dap-1620 Firmware vulnerabilities

4 known vulnerabilities affecting dlink/dap-1620_firmware.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4

Vulnerabilities

Page 1 of 1
CVE-2025-2620CRITICALCVSS 9.3v1.032025-03-22
CVE-2025-2620 [CRITICAL] CWE-119 CVE-2025-2620: A vulnerability has been found in D-Link DAP-1620 1.03 and classified as critical. This vulnerabilit A vulnerability has been found in D-Link DAP-1620 1.03 and classified as critical. This vulnerability affects the function mod_graph_auth_uri_handler of the file /storage of the component Authentication Handler. The manipulation leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public a
nvd
CVE-2025-2621CRITICALCVSS 9.3v1.032025-03-22
CVE-2025-2621 [CRITICAL] CWE-119 CVE-2025-2621: A vulnerability was found in D-Link DAP-1620 1.03 and classified as critical. This issue affects the A vulnerability was found in D-Link DAP-1620 1.03 and classified as critical. This issue affects the function check_dws_cookie of the file /storage. The manipulation of the argument uid leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. This vulnerability only aff
nvd
CVE-2025-2618CRITICALCVSS 9.3v1.032025-03-22
CVE-2025-2618 [CRITICAL] CWE-119 CVE-2025-2618: A vulnerability, which was classified as critical, has been found in D-Link DAP-1620 1.03. Affected A vulnerability, which was classified as critical, has been found in D-Link DAP-1620 1.03. Affected by this issue is the function set_ws_action of the file /dws/api/ of the component Path Handler. The manipulation leads to heap-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Th
nvd
CVE-2025-2619CRITICALCVSS 9.3v1.032025-03-22
CVE-2025-2619 [CRITICAL] CWE-119 CVE-2025-2619: A vulnerability, which was classified as critical, was found in D-Link DAP-1620 1.03. This affects t A vulnerability, which was classified as critical, was found in D-Link DAP-1620 1.03. This affects the function check_dws_cookie of the file /storage of the component Cookie Handler. The manipulation leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Thi
nvd