VendorsD-Linkdir-859_a3all versions
Vulnerabilities

D-Link DIR-859 A3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2019-17508
On D-Link DIR-859 A3-1.06 and DIR-850 A1.13 devices, /etc/services/DEVICE.TIME.php allows command injection via the $SERVER variable.
Published 2019-10-11 · Modified
10.0EPSS 0.158
CVE-2024-57045
A vulnerability in the D-Link DIR-859 router with firmware version A3 1.05 and earlier permits unauthorized individuals to bypass the authentication. An attacker can obtain a user name and password by forging a post request to the / getcfg.php page.
Published 2025-02-18 · Analyzed
9.8EPSS 0.322
CVE-2022-25106
D-Link DIR-859 v1.05 was discovered to contain a stack-based buffer overflow via the function genacgi_main. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted payload.
Published 2022-03-04 · Modified
7.1EPSS 0.086