VendorsD-Linkdir-868l_b1_firmwareall versions
Vulnerabilities

D-Link dir-868l b1 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2019-17506
There are some web interfaces without authentication requirements on D-Link DIR-868L B1-2.03 and DIR-817LW A1-1.04 routers. An attacker can get the router's username and password (and other information) via a DEVICE.ACCOUNT value for SERVICES in conjunction with AUTHORIZED_GROUP=1%0a to getcfg.php. This could be used to control the router remotely.
Published 2019-10-11 · Modified
10.0EPSS 0.564
CVE-2025-14659
D-Link DIR-860LB1/DIR-868LB1 DHCP command injection
Published 2025-12-14 · Analyzed
9.8EPSS 0.038