Dlink Dar-8000 Firmware vulnerabilities

8 known vulnerabilities affecting dlink/dar-8000_firmware.

Total CVEs
8
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH7MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2023-5151HIGHCVSS 8.8≤ 2015-12-312023-09-25
CVE-2023-5151 [MEDIUM] CWE-89 CVE-2023-5151: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical was found in D-Link DAR-8000 ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical was found in D-Link DAR-8000 up to 20151231. Affected by this vulnerability is an unknown functionality of the file /autheditpwd.php. The manipulation of the argument hid_id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and
nvd
CVE-2023-5148HIGHCVSS 8.8≤ 2015-12-312023-09-25
CVE-2023-5148 [MEDIUM] CWE-434 CVE-2023-5148: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 and DAR-8000 up to 2015 ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 and DAR-8000 up to 20151231. It has been declared as critical. This vulnerability affects unknown code of the file /Tool/uploadfile.php. The manipulation of the argument file_upload leads to unrestricted upload. The attack can be initiated remotely. The exploit has been discl
nvd
CVE-2023-5145HIGHCVSS 8.8≤ 201512312023-09-25
CVE-2023-5145 [MEDIUM] CWE-434 CVE-2023-5145: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DAR-7000 up to 20151231 and ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DAR-7000 up to 20151231 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /sysmanage/licence.php. The manipulation of the argument file_upload leads to unrestricted upload. The attack can be launched remotely. The exploit has been
nvd
CVE-2023-5154HIGHCVSS 8.8≤ 2015-12-312023-09-25
CVE-2023-5154 [MEDIUM] CWE-434 CVE-2023-5154: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DAR-8000 up to 20151231 and ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DAR-8000 up to 20151231 and classified as critical. This vulnerability affects unknown code of the file /sysmanage/changelogo.php. The manipulation of the argument file_upload leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to th
nvd
CVE-2023-5146HIGHCVSS 8.8≤ 201512312023-09-25
CVE-2023-5146 [MEDIUM] CWE-434 CVE-2023-5146: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 and DAR-8000 up to 2015 ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 and DAR-8000 up to 20151231 and classified as critical. Affected by this issue is some unknown functionality of the file /sysmanage/updatelib.php. The manipulation of the argument file_upload leads to unrestricted upload. The attack may be launched remotely. The exploit has b
nvd
CVE-2023-5150HIGHCVSS 8.8≤ 2015-12-312023-09-25
CVE-2023-5150 [MEDIUM] CWE-434 CVE-2023-5150: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical has been found in D-Link DAR- ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical has been found in D-Link DAR-7000 and DAR-8000 up to 20151231. Affected is an unknown function of the file /useratte/web.php. The manipulation of the argument file_upload leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to t
nvd
CVE-2023-5152MEDIUMCVSS 6.5≤ 2015-12-312023-09-25
CVE-2023-5152 [MEDIUM] CWE-89 CVE-2023-5152: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in D-Link DAR-7000 and DAR-8000 up to 20151231. Affected by this issue is some unknown functionality of the file /importexport.php. The manipulation of the argument sql leads to sql injection. The attack may be launched remotely. The exploit has been discl
nvd
CVE-2023-5144HIGHCVSS 8.8≤ 201512312023-09-24
CVE-2023-5144 [MEDIUM] CWE-434 CVE-2023-5144: ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Li ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DAR-7000 and DAR-8000 up to 20151231. Affected is an unknown function of the file /sysmanage/updateos.php. The manipulation of the argument file_upload leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been d
nvd