Dlink Dar-7000 Firmware vulnerabilities

23 known vulnerabilities affecting dlink/dar-7000_firmware.

Total CVEs
23
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH8MEDIUM10

Vulnerabilities

Page 2 of 2
CVE-2023-5153MEDIUMCVSS 6.5≤ 2015-12-312023-09-25
CVE-2023-5153 [MEDIUM] CWE-89 CVE-2023-5153: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Li ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DAR-8000 up to 20151231. This affects an unknown part of the file /Tool/querysql.php. The manipulation leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier
nvd
CVE-2023-5143CRITICALCVSS 9.8≤ 201512312023-09-24
CVE-2023-5143 [MEDIUM] CWE-20 CVE-2023-5143: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in D-Link DAR-7000 up to 20151231. This issue affects some unknown processing of the file /log/webmailattach.php. The manipulation of the argument table_name leads to an unknown weakness. The attack may be initiated remotely. The exploit has been disclosed
nvd
CVE-2023-5144HIGHCVSS 8.8≤ 201512312023-09-24
CVE-2023-5144 [MEDIUM] CWE-434 CVE-2023-5144: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Li ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DAR-7000 and DAR-8000 up to 20151231. Affected is an unknown function of the file /sysmanage/updateos.php. The manipulation of the argument file_upload leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been d
nvd