Dlink Dns-320 Firmware vulnerabilities
29 known vulnerabilities affecting dlink/dns-320_firmware.
Total CVEs
29
CISA KEV
2
actively exploited
Public exploits
2
Exploited in wild
2
Severity breakdown
CRITICAL2HIGH8MEDIUM6LOW13
Vulnerabilities
Page 2 of 2
CVE-2026-4205LOWCVSS 2.1≤ 2026-02-052026-03-16
CVE-2026-4205 [LOW] CWE-74 CVE-2026-4205: A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW,
A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. The impacted element is the function cgi_refresh_db/FTP_Server_BlockIP_Add/FTP_Server_BlockIP_Del
nvd
CVE-2026-4209LOWCVSS 2.1≤ 2026-02-052026-03-16
CVE-2026-4209 [LOW] CWE-74 CVE-2026-4209: A vulnerability was identified in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW,
A vulnerability was identified in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. Affected is the function cgi_create_import_users/cgi_user_batch_create/cgi_user_set_quota/cgi_user
nvd
CVE-2026-4210LOWCVSS 2.1≤ 2026-02-052026-03-16
CVE-2026-4210 [LOW] CWE-74 CVE-2026-4210: A security flaw has been discovered in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-32
A security flaw has been discovered in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. Affected by this vulnerability is the function cgi_tm_set_share of the file /cgi-bin/time_ma
nvd
CVE-2026-4195LOWCVSS 2.1≤ 2026-02-052026-03-16
CVE-2026-4195 [LOW] CWE-74 CVE-2026-4195: A flaw has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321,
A flaw has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. This affects an unknown function of the file /cgi-bin/wizard_mgr.cgi. Executing a manipulation can lead to
nvd
CVE-2026-4206LOWCVSS 2.1≤ 2026-02-052026-03-16
CVE-2026-4206 [LOW] CWE-74 CVE-2026-4206: A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-3
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. This affects the function FMT_rebuild_diskmgr/FMT_create_diskmgr/ScanDisk_run_e2fsck of the file /cgi-
nvd
CVE-2024-8461MEDIUMCVSS 6.9v2.02b012024-09-05
CVE-2024-8461 [MEDIUM] CWE-200 CVE-2024-8461: A vulnerability, which was classified as problematic, was found in D-Link DNS-320 2.02b01. This affe
A vulnerability, which was classified as problematic, was found in D-Link DNS-320 2.02b01. This affects an unknown part of the file /cgi-bin/discovery.cgi of the component Web Management Interface. The manipulation leads to information disclosure. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be u
nvd
CVE-2024-8460MEDIUMCVSS 6.3v2.02b012024-09-05
CVE-2024-8460 [MEDIUM] CWE-200 CVE-2024-8460: A vulnerability, which was classified as problematic, has been found in D-Link DNS-320 2.02b01. Affe
A vulnerability, which was classified as problematic, has been found in D-Link DNS-320 2.02b01. Affected by this issue is some unknown functionality of the file /cgi-bin/widget_api.cgi of the component Web Management Interface. The manipulation of the argument getHD/getSer/getSys leads to information disclosure. The attack may be launched remotely. Th
nvd
CVE-2020-25506CRITICALCVSS 9.8KEVPoCv2.06b012021-02-02
CVE-2020-25506 [CRITICAL] CWE-78 CVE-2020-25506: D-Link DNS-320 FW v2.06B01 Revision Ax is affected by command injection in the system_mgr.cgi compon
D-Link DNS-320 FW v2.06B01 Revision Ax is affected by command injection in the system_mgr.cgi component, which can lead to remote arbitrary code execution.
nvd
CVE-2019-16057CRITICALCVSS 9.8KEVPoC≤ 2.05.b102019-09-16
CVE-2019-16057 [CRITICAL] CWE-78 CVE-2019-16057: The login_mgr.cgi script in D-Link DNS-320 through 2.05.B10 is vulnerable to remote command injectio
The login_mgr.cgi script in D-Link DNS-320 through 2.05.B10 is vulnerable to remote command injection.
nvd
← Previous2 / 2