VendorsD-Linkdi-8100all versions
Vulnerabilities

D-Link DI-8100

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

28CVEs
CVE-2026-7248
D-Link DI-8100 CGI Endpoint tgfile.htm tgfile_htm buffer overflow
Published 2026-04-28 · Analyzed
10.0EPSS 0.038
CVE-2026-7854
D-Link DI-8100 POST Parameter url_rule.asp url_rule_asp buffer overflow
Published 2026-05-05 · Analyzed
10.0EPSS 0.019
CVE-2026-7853
D-Link DI-8100 HTTP auto_reboot.asp sprintf buffer overflow
Published 2026-05-05 · Analyzed
10.0EPSS 0.019
CVE-2025-44084
D-link DI-8100 16.07.26A1 is vulnerable to Command Injection. An attacker can exploit this vulnerability by crafting specific HTTP requests, triggering the command execution flaw and gaining the highest privilege shell access to the firmware system.
Published 2025-05-20 · Analyzed
9.8EPSS 0.201
CVE-2024-7833
D-Link DI-8100 upgrade_filter.asp upgrade_filter_asp command injection
Published 2024-08-15 · Analyzed
9.8EPSS 0.047
CVE-2025-7911
D-Link DI-8100 jhttpd upnp_ctrl.asp sprintf stack-based overflow
Published 2025-07-20 · Analyzed
9.8EPSS 0.015
CVE-2025-44083
An issue in D-Link DI-8100 16.07.26A1 allows a remote attacker to bypass administrator login authentication
Published 2025-05-21 · Analyzed
9.8EPSS 0.008
CVE-2025-7762
D-Link DI-8100 HTTP Request menu_nat_more.asp stack-based overflow
Published 2025-07-17 · Analyzed
9.0EPSS 0.044
CVE-2025-7908
D-Link DI-8100 jhttpd ddns.asp sprintf stack-based overflow
Published 2025-07-20 · Analyzed
9.0EPSS 0.013
CVE-2026-7855
D-Link DI-8100 HTTP Request tggl.asp tggl_asp buffer overflow
Published 2026-05-05 · Analyzed
9.0EPSS 0.012
CVE-2025-6881
D-Link DI-8100 jhttpd pppoe_base.asp buffer overflow
Published 2025-06-30 · Analyzed
9.0EPSS 0.009
CVE-2025-7790
D-Link DI-8100 HTTP Request menu_nat.asp stack-based overflow
Published 2025-07-18 · Analyzed
9.0EPSS 0.009
CVE-2025-3538
D-Link DI-8100 jhttpd auth.asp auth_asp stack-based overflow
Published 2025-04-13 · Analyzed
8.8EPSS 0.132
CVE-2024-7436
D-Link DI-8100 msp_info.htm msp_info_htm command injection
Published 2024-08-03 · Analyzed
8.8EPSS 0.078
CVE-2025-5228
D-Link DI-8100 jhttpd login.cgi httpd_get_parm stack-based overflow
Published 2025-05-27 · Analyzed
8.8EPSS 0.029
CVE-2026-7851
D-Link DI-8100 yyxz.asp sprintf stack-based overflow
Published 2026-05-05 · Analyzed
8.3EPSS 0.012
CVE-2026-7247
D-Link DI-8100 File Extension file_exten.asp file_exten_asp buffer overflow
Published 2026-04-28 · Analyzed
8.3EPSS 0.012
CVE-2026-7857
D-Link DI-8100 CGI user_group.asp sprintf buffer overflow
Published 2026-05-05 · Analyzed
8.3EPSS 0.012
CVE-2026-7856
D-Link DI-8100 Web Management url_member.asp buffer overflow
Published 2026-05-05 · Analyzed
8.3EPSS 0.012
CVE-2025-7603
D-Link DI-8100 HTTP Request jingx.asp stack-based overflow
Published 2025-07-14 · Analyzed
8.3EPSS 0.010
CVE-2025-7602
D-Link DI-8100 HTTP Request arp_sys.asp stack-based overflow
Published 2025-07-14 · Analyzed
8.3EPSS 0.010
CVE-2025-4544
D-Link DI-8100 jhttpd ddos.asp stack-based overflow
Published 2025-05-11 · Analyzed
7.5EPSS 0.109
CVE-2024-44375
D-Link DI-8100 v16.07.26A1 has a stack overflow vulnerability in the dbsrv_asp function.
Published 2024-09-09 · Modified
7.5EPSS 0.007
CVE-2025-52222
D-Link DI-8003 v16.07.26A1, DI-8500 v16.07.26A1; DI-8003G v17.12.21A1, DI-8200G v17.12.20A1, DI-8200 v16.07.26A1, DI-8400 v16.07.26A1, DI-8004w v16.07.26A1, DI-8100 v16.07.26A1, and DI-8100G v17.12.20A1 were discovered to contain a buffer overflow via the rd_en, rd_auth, rd_acct, http_hadmin, http_hadminpwd, rd_key, and rd_ip parameters in the radius_asp function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
Published 2026-04-08 · Analyzed
7.5EPSS 0.003
CVE-2025-28398
D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_net_asp function via the remot_ip parameter.
Published 2025-04-01 · Analyzed
7.1EPSS 0.006
CVE-2025-28395
D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_road_asp function via the host_ip parameter.
Published 2025-04-01 · Analyzed
7.1EPSS 0.006
CVE-2025-51281
D-Link DI-8100 16.07.26A1 is vulnerable to Buffer Overflow via the en`, `val and id parameters in the qj_asp function. This vulnerability allows authenticated attackers to cause a Denial of Service (DoS) by sending crafted GET requests with overly long values for these parameters.
Published 2025-08-25 · Analyzed
7.0EPSS 0.004
CVE-2024-52711
DI-8100 v16.07.26A1 is vulnerable to Buffer Overflow In the ip_position_asp function via the ip parameter.
Published 2024-11-19 · Analyzed
5.7EPSS 0.006