Dlink Dar-7000 Firmware vulnerabilities
23 known vulnerabilities affecting dlink/dar-7000_firmware.
Total CVEs
23
CISA KEV
0
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL12HIGH10MEDIUM1
Vulnerabilities
Page 2 of 2
CVE-2023-42406P3CRITICALCVSS 9.8v31r02b1413c2023-10-26
CVE-2023-42406 [CRITICAL] CWE-89 CVE-2023-42406: SQL injection vulnerability in D-Link Online behavior audit gateway DAR-7000 V31R02B1413C allows a r
SQL injection vulnerability in D-Link Online behavior audit gateway DAR-7000 V31R02B1413C allows a remote attacker to obtain sensitive information and execute arbitrary code via the editrole.php component.
nvd
CVE-2023-44694P3CRITICALCVSS 9.8vv31r02b1413c2023-10-17
CVE-2023-44694 [CRITICAL] CWE-89 CVE-2023-44694: D-Link Online behavior audit gateway DAR-7000 V31R02B1413C is vulnerable to SQL Injection via /log/m
D-Link Online behavior audit gateway DAR-7000 V31R02B1413C is vulnerable to SQL Injection via /log/mailrecvview.php.
nvd
CVE-2023-5153P3MEDIUMCVSS 6.5≤ 2015-12-312023-09-25
CVE-2023-5153 [MEDIUM] CWE-89 CVE-2023-5153: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Li
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DAR-8000 up to 20151231. This affects an unknown part of the file /Tool/querysql.php. The manipulation leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier
nvd
← Previous2 / 2