Dlink Dap-1880Ac Firmware vulnerabilities

4 known vulnerabilities affecting dlink/dap-1880ac_firmware.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH3

Vulnerabilities

Page 1 of 1
CVE-2021-20697CRITICALCVSS 9.8≤ 1.212021-04-26
CVE-2021-20697 [CRITICAL] CWE-306 CVE-2021-20697: Missing authentication for critical function in DAP-1880AC firmware version 1.21 and earlier allows Missing authentication for critical function in DAP-1880AC firmware version 1.21 and earlier allows a remote attacker to login to the device as an authenticated user without the access privilege via unspecified vectors.
nvd
CVE-2021-20696HIGHCVSS 8.8≤ 1.212021-04-26
CVE-2021-20696 [HIGH] CWE-78 CVE-2021-20696: DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to execute arbit DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to execute arbitrary OS commands by sending a specially crafted request to a specific CGI program.
nvd
CVE-2021-20694HIGHCVSS 8.8≤ 1.212021-04-26
CVE-2021-20694 [HIGH] CVE-2021-20694: Improper access control vulnerability in DAP-1880AC firmware version 1.21 and earlier allows a remot Improper access control vulnerability in DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to bypass access restriction and to start a telnet service via unspecified vectors.
nvd
CVE-2021-20695HIGHCVSS 8.8≤ 1.212021-04-26
CVE-2021-20695 [HIGH] CWE-295 CVE-2021-20695: Improper following of a certificate's chain of trust vulnerability in DAP-1880AC firmware version 1. Improper following of a certificate's chain of trust vulnerability in DAP-1880AC firmware version 1.21 and earlier allows a remote authenticated attacker to gain root privileges via unspecified vectors.
nvd