Dlink
Dlink Dir-823g Firmware: vulnerabilidades y CVE
Dlink Dir-823g Firmware tiene 59 vulnerabilidades publicadas, 7 de ellas en los últimos 12 meses. 13 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE59
Últimos 12 meses7
Críticas13
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-15270 | Media (6.8) | 0.85% | — | 9 jul 2026 | A weakness has been identified in D-link DIR-823G 1.0.2B05_20181207. Affected by this vulnerability is an unknown functionality of the file /etc/boa/boa.conf of the component Web Interface. Executing a manipulation can… |
| CVE-2026-11492 | Baja (2.1) | 0.51% | — | 8 jun 2026 | A security flaw has been discovered in D-Link DIR-823G 1.0.2B05. The affected element is an unknown function of the file /etc/vsftpd.conf of the component vsftpd. Performing a manipulation results in least privilege… |
| CVE-2026-4193 | Media (5.5) | 1.8% | — | 16 mar 2026 | A security vulnerability has been detected in D-Link DIR-823G 1.0.2B05. The affected element is the function… |
| CVE-2025-60675 | Media (5.4) | 1.5% | — | 13 nov 2025 | A command injection vulnerability exists in the D-Link DIR-823G router firmware DIR823G_V1.0.2B05_20181207.bin in the timelycheck and sysconf binaries, which process the /tmp/new_qos.rule configuration file. The… |
| CVE-2025-60671 | Media (5.4) | 1.4% | — | 13 nov 2025 | A command injection vulnerability exists in the D-Link DIR-823G router firmware DIR823G_V1.0.2B05_20181207.bin in the timelycheck and sysconf binaries, which process the /var/system/linux_vlan_reinit file. The… |
| CVE-2025-60332 | Alta (7.5) | 5.0% | — | 22 oct 2025 | A NULL pointer dereference in the SetWLanRadioSettings function of D-Link DIR-823G A1 v1.0.2B05 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request. |
| CVE-2025-60331 | Alta (7.5) | 0.62% | — | 22 oct 2025 | D-Link DIR-823G A1 v1.0.2B05 was discovered to contain a buffer overflow in the FillMacCloneMac parameter in the /EXCU_SHELL endpoint. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted… |
| CVE-2025-2360 | Media (6.9) | 4.1% | — | 17 mar 2025 | A vulnerability classified as critical was found in D-Link DIR-823G 1.0.2B05_20181207. Affected by this vulnerability is the function SetUpnpSettings of the file /HNAP1/ of the component UPnP Service. The manipulation… |
| CVE-2025-2359 | Media (6.9) | 15% | — | 17 mar 2025 | A vulnerability classified as critical has been found in D-Link DIR-823G 1.0.2B05_20181207. Affected is the function SetDDNSSettings of the file /HNAP1/ of the component DDNS Service. The manipulation of the argument… |
| CVE-2024-13030 | Media (6.9) | 1.9% | — | 30 dic 2024 | A vulnerability was found in D-Link DIR-823G 1.0.2B05_20181207. It has been rated as critical. This issue affects the function… |
| CVE-2024-51024 | Alta (8) | 1.4% | — | 5 nov 2024 | D-Link DIR_823G 1.0.2B05 was discovered to contain a command injection vulnerability via the HostName parameter in the SetWanSettings function. This vulnerability allows attackers to execute arbitrary OS commands via a… |
| CVE-2024-51023 | Alta (8.8) | 1.5% | — | 5 nov 2024 | D-Link DIR_823G 1.0.2B05 was discovered to contain a command injection vulnerability via the Address parameter in the SetNetworkTomographySettings function. This vulnerability allows attackers to execute arbitrary OS… |
| CVE-2024-44408 | Alta (7.5) | 0.63% | — | 6 sept 2024 | D-Link DIR-823G v1.0.2B05_20181207 is vulnerable to Information Disclosure. The device allows unauthorized configuration file downloads, and the downloaded configuration files contain plaintext user passwords. |
| CVE-2024-33345 | Media (6.5) | 0.78% | — | 29 abr 2024 | D-Link DIR-823G A1V1.0.2B05 was found to contain a Null-pointer dereference in the main function of upload_firmware.cgi, which allows remote attackers to cause a Denial of Service (DoS) via a crafted input. |
| CVE-2024-27662 | Media (6.5) | 0.43% | — | 29 feb 2024 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_4110f4(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. |
| CVE-2024-27661 | Media (6.5) | 0.43% | — | 29 feb 2024 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer dereferences in sub_4484A8(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. |
| CVE-2024-27660 | Media (6.5) | 0.64% | — | 29 feb 2024 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_41C488(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. |
| CVE-2024-27659 | Media (6.5) | 0.64% | — | 29 feb 2024 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer dereferences in sub_42AF30(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. |
| CVE-2024-27658 | Media (6.5) | 0.64% | — | 29 feb 2024 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer dereferences in sub_4484A8(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input. |
| CVE-2024-27657 | Alta (8.8) | 1.2% | — | 29 feb 2024 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the User-Agent parameter. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input, and possibly remote code… |
| CVE-2024-27656 | Alta (8.8) | 0.62% | — | 29 feb 2024 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the Cookie parameter. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input, and possibly remote code… |
| CVE-2024-27655 | Alta (8.8) | 1.2% | — | 29 feb 2024 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the SOAPACTION parameter. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input, and possibly remote code… |
| CVE-2023-44839 | Alta (7.5) | 8.1% | — | 5 oct 2023 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the Encryption parameter in the SetWLanRadioSecurity function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a… |
| CVE-2023-44838 | Alta (7.5) | 0.86% | — | 5 oct 2023 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the TXPower parameter in the SetWLanRadioSettings function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a… |
| CVE-2023-44837 | Alta (7.5) | 0.86% | — | 5 oct 2023 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the Password parameter in the SetWanSettings function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted… |
| CVE-2023-44836 | Alta (7.5) | 0.86% | — | 5 oct 2023 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the SSID parameter in the SetWLanRadioSettings function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted… |
| CVE-2023-44835 | Alta (7.5) | 0.86% | — | 5 oct 2023 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the Mac parameter in the SetParentsControlInfo function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted… |
| CVE-2023-44834 | Alta (7.5) | 0.86% | — | 5 oct 2023 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the StartTime parameter in the SetParentsControlInfo function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a… |
| CVE-2023-44833 | Alta (7.5) | 0.86% | — | 5 oct 2023 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the GuardInt parameter in the SetWLanRadioSettings function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a… |
| CVE-2023-44832 | Alta (7.5) | 0.83% | — | 5 oct 2023 | D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the MacAddress parameter in the SetWanSettings function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.