VendorsD-Linkdir-615_firmwareany version
Vulnerabilities

D-Link DIR-615 Firmware any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2019-16920
Unauthenticated remote code execution occurs in D-Link products such as DIR-655C, DIR-866L, DIR-652, and DHP-1565. The issue occurs when the attacker sends an arbitrary input to a "PingTest" device common gateway interface that could lead to common injection. An attacker who successfully triggers the command injection could achieve full system compromise. Later, it was independently found that these are also affected: DIR-855L, DAP-1533, DIR-862L, DIR-615, DIR-835, and DIR-825.
Published 2019-09-27 · Analyzed
10.0KEVEPSS 1.000
CVE-2014-8361
The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request, as exploited in the wild through 2023.
Published 2015-05-01 · Analyzed
10.0KEV1 PoCEPSS 1.000
CVE-2018-25115
D-Link DIR-110/412/600/615/645/815 RCE via service.cgi
Published 2025-08-27 · Analyzed
10.0EPSS 0.104
CVE-2018-15839
D-Link DIR-615 devices have a buffer overflow via a long Authorization HTTP header.
Published 2018-08-28 · Modified
9.81 PoCEPSS 0.453
CVE-2013-10050
D-Link Devices tools_vct.xgi Authenticated RCE
Published 2025-08-01 · Modified
8.8EPSS 0.136
CVE-2026-1448
D-Link DIR-615 Web Management wiz_policy_3_machine.php os command injection
Published 2026-01-26 · Analyzed
8.3EPSS 0.058
CVE-2024-0717
D-Link Good Line Router v2 HTTP GET Request devinfo information disclosure
Published 2024-01-19 · Modified
5.3EPSS 0.182