Dlink Dwl-6610Ap Firmware vulnerabilities

5 known vulnerabilities affecting dlink/dwl-6610ap_firmware.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL5

Vulnerabilities

Page 1 of 1
CVE-2023-43206CRITICALCVSS 9.8v4.3.0.8b003c2023-09-20
CVE-2023-43206 [CRITICAL] CWE-77 CVE-2023-43206: D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function web_cert_download_handler. This vulnerability allows attackers to execute arbitrary commands via the certDownload parameter.
nvd
CVE-2023-43203CRITICALCVSS 9.8v4.3.0.8b003c2023-09-20
CVE-2023-43203 [CRITICAL] CWE-787 CVE-2023-43203: D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a stack overflow vulnerability in the fu D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a stack overflow vulnerability in the function update_users.
nvd
CVE-2023-43207CRITICALCVSS 9.8v4.3.0.8b003c2023-09-20
CVE-2023-43207 [CRITICAL] CWE-77 CVE-2023-43207: D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function config_upload_handler. This vulnerability allows attackers to execute arbitrary commands via the configRestore parameter.
nvd
CVE-2023-43204CRITICALCVSS 9.8v4.3.0.8b003c2023-09-20
CVE-2023-43204 [CRITICAL] CWE-77 CVE-2023-43204: D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function sub_2EF50. This vulnerability allows attackers to execute arbitrary commands via the manual-time-string parameter.
nvd
CVE-2023-43202CRITICALCVSS 9.8v4.3.0.8b003c2023-09-20
CVE-2023-43202 [CRITICAL] CWE-77 CVE-2023-43202: D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the D-LINK DWL-6610 FW_v_4.3.0.8B003C was discovered to contain a command injection vulnerability in the function pcap_download_handler. This vulnerability allows attackers to execute arbitrary commands via the update.device.packet-capture.tftp-file-name parameter.
nvd