VendorsD-Linkdir-100all versions
Vulnerabilities

D-Link DIR-100

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2013-6026
The web interface on D-Link DIR-100, DIR-120, DI-624S, DI-524UP, DI-604S, DI-604UP, DI-604+, and TM-G5240 routers; Planex BRL-04R, BRL-04UR, and BRL-04CW routers; and Alpha Networks routers allows remote attackers to bypass authentication and modify settings via an xmlset_roodkcableoj28840ybtide User-Agent HTTP header, as exploited in the wild in October 2013.
Published 2013-10-19 · Modified
10.0EPSS 0.077
CVE-2013-7052
D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script
Published 2020-02-04 · Modified
9.81 PoCEPSS 0.247
CVE-2013-7055
D-Link DIR-100 4.03B07 has PPTP and poe information disclosure
Published 2020-02-04 · Modified
9.81 PoCEPSS 0.070
CVE-2013-7051
D-Link DIR-100 4.03B07: cli.cgi security bypass due to failure to check authentication parameters
Published 2020-02-04 · Modified
8.81 PoCEPSS 0.156
CVE-2013-7053
D-Link DIR-100 4.03B07: cli.cgi CSRF
Published 2020-02-04 · Modified
8.81 PoCEPSS 0.034
CVE-2013-6027
Stack-based buffer overflow in the RuntimeDiagnosticPing function in /bin/webs on D-Link DIR-100 routers might allow remote authenticated administrators to execute arbitrary commands via a long set/runtime/diagnostic/pingIp parameter to Tools/tools_misc.xgi.
Published 2013-10-19 · Modified
8.51 PoCEPSS 0.045
CVE-2013-7054
D-Link DIR-100 4.03B07: cli.cgi XSS
Published 2020-02-04 · Modified
6.11 PoCEPSS 0.035