Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

D-link — Vulnerabilities & Security Advisories 779

Browse all 779 CVE security advisories affecting D-link. AI-powered Chinese analysis, POCs, and references for each vulnerability.

D-Link manufactures networking hardware, primarily consumer-grade routers and wireless access points, serving as a critical infrastructure component for home and small business internet connectivity. The company’s product line has historically been plagued by significant security deficiencies, resulting in 760 recorded Common Vulnerabilities and Exposures. These flaws frequently involve remote code execution, cross-site scripting, and privilege escalation, often stemming from hardcoded credentials or unpatched firmware updates. A notable incident occurred in 2017 when a critical vulnerability allowed attackers to gain administrative control over millions of devices, facilitating large-scale botnet recruitment. The persistent lack of timely security patches and weak default configurations have established a pattern of neglect, leaving users exposed to persistent threats. This track record highlights systemic issues in the development and maintenance lifecycle of D-Link’s network equipment, necessitating rigorous user-side security measures.

CVE IDTitleCVSSSeverityPublished
CVE-2025-5620 D-Link DIR-816 setipsec_config os command injection — DIR-816CWE-78 7.3 High2025-06-04
CVE-2025-5573 D-Link DCS-932L setSystemWizard setSystemControl os command injection — DCS-932LCWE-78 6.3 Medium2025-06-04
CVE-2025-5572 D-Link DCS-932L setSystemEmail stack-based overflow — DCS-932LCWE-121 8.8 High2025-06-04
CVE-2025-5571 D-Link DCS-932L setSystemAdmin os command injection — DCS-932LCWE-78 6.3 Medium2025-06-04
CVE-2025-5492 D-Link DI-500WF-WT /usr/sbin/jhttpd msp_info.htm sub_456DE8 command injection — DI-500WF-WTCWE-77 6.3 Medium2025-06-03
CVE-2025-5228 D-Link DI-8100 jhttpd login.cgi httpd_get_parm stack-based overflow — DI-8100CWE-121 8.8 High2025-05-27
CVE-2025-5215 D-Link DCS-5020L ptdc.cgi websReadEvent stack-based overflow — DCS-5020LCWE-121 8.8 High2025-05-27
CVE-2025-4904 D-Link DI-7003GV2 webgl.data sub_41F0FC information disclosure — DI-7003GV2CWE-200 5.3 Medium2025-05-19
CVE-2025-4903 D-Link DI-7003GV2 webgl.asp sub_41F4F0 unverified password change — DI-7003GV2CWE-620 5.3 Medium2025-05-19
CVE-2025-4902 D-Link DI-7003GV2 versionupdate.data sub_48F4F0 information disclosure — DI-7003GV2CWE-200 5.3 Medium2025-05-19
CVE-2025-4901 D-Link DI-7003GV2 HTTP Endpoint state_view.data sub_41E304 information disclosure — DI-7003GV2CWE-200 4.3 Medium2025-05-18
CVE-2025-4883 D-Link DI-8100 Connection Limit Page ctxz.asp ctxz_asp stack-based overflow — DI-8100CWE-121 7.2 High2025-05-18
CVE-2025-4860 D-Link DAP-2695 Static Pool Settings Page adv_dhcps.php cross site scripting — DAP-2695CWE-79 2.4 Low2025-05-18
CVE-2025-4859 D-Link DAP-2695 MAC Bypass Settings Page adv_macbypass.php cross site scripting — DAP-2695CWE-79 2.4 Low2025-05-18
CVE-2025-4858 D-Link DAP-2695 ARP Spoofing Prevention Page adv_arpspoofing.php cross site scripting — DAP-2695CWE-79 2.4 Low2025-05-18
CVE-2025-4843 D-Link DCS-932L udev SubUPnPCSInit stack-based overflow — DCS-932LCWE-121 8.8 High2025-05-17
CVE-2025-4842 D-Link DCS-932L ucp isUCPCameraNameChanged stack-based overflow — DCS-932LCWE-121 8.8 High2025-05-17
CVE-2025-4841 D-Link DCS-932L gpio sub_404780 stack-based overflow — DCS-932LCWE-121 8.8 High2025-05-17
CVE-2025-4756 D-Link DI-7003GV2 restart.asp denial of service — DI-7003GV2CWE-404 5.3 Medium2025-05-16
CVE-2025-4755 D-Link DI-7003GV2 netconfig.asp sub_497DE4 improper authentication — DI-7003GV2CWE-287 7.3 High2025-05-16
CVE-2025-4753 D-Link DI-7003GV2 login.data information disclosure — DI-7003GV2CWE-200 5.3 Medium2025-05-16
CVE-2025-4752 D-Link DI-7003GV2 install_base.data information disclosure — DI-7003GV2CWE-200 5.3 Medium2025-05-16
CVE-2025-4751 D-Link DI-7003GV2 index.data information disclosure — DI-7003GV2CWE-200 5.3 Medium2025-05-16
CVE-2025-4750 D-Link DI-7003GV2 Configuration get_version.data information disclosure — DI-7003GV2CWE-200 5.3 Medium2025-05-16
CVE-2025-4749 D-Link DI-7003GV2 Factory Reset backup.asp sub_4983B0 denial of service — DI-7003GV2CWE-404 7.5 High2025-05-16
CVE-2025-4544 D-Link DI-8100 jhttpd ddos.asp stack-based overflow — DI-8100CWE-121 6.6 Medium2025-05-11
CVE-2025-4454 D-Link DIR-619L wake_on_lan command injection — DIR-619LCWE-77 6.3 Medium2025-05-09
CVE-2025-4453 D-Link DIR-619L formSysCmd command injection — DIR-619LCWE-77 6.3 Medium2025-05-09
CVE-2025-4452 D-Link DIR-619L formSetWizard2 buffer overflow — DIR-619LCWE-120 8.8 High2025-05-09
CVE-2025-4451 D-Link DIR-619L formSetWAN_Wizard52 buffer overflow — DIR-619LCWE-120 8.8 High2025-05-09

This page lists every published CVE security advisory associated with D-link. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.