VendorsD-Linkdns-322lany version
Vulnerabilities

D-Link DNS-322L any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

24CVEs
CVE-2014-7857
D-Link DNS-320L firmware before 1.04b12, DNS-327L before 1.03b04 Build0119, DNR-326 1.40b03, DNS-320B 1.02b01, DNS-345 1.03b06, DNS-325 1.05b03, and DNS-322L 2.00b07 allow remote attackers to bypass authentication and log in with administrator permissions by passing the cgi_set_wto command in the cmd parameter, and setting the spawned session's cookie to username=admin.
Published 2017-08-25 · Modified
10.0EPSS 0.152
CVE-2026-4197
D-Link DNS-1550-04 download_mgr.cgi RSS_Item_List command injection
Published 2026-03-15 · Analyzed
9.8EPSS 0.237
CVE-2014-7859
Stack-based buffer overflow in login_mgr.cgi in D-Link firmware DNR-320L and DNS-320LW before 1.04b08, DNR-322L before 2.10 build 03, DNR-326 before 2.10 build 03, and DNS-327L before 1.04b01 allows remote attackers to execute arbitrary code by crafting malformed "Host" and "Referer" header values.
Published 2017-08-25 · Modified
9.8EPSS 0.209
CVE-2026-4203
D-Link DNS-1550-04 network_mgr.cgi cgi_dhcpd command injection
Published 2026-03-16 · Analyzed
9.8EPSS 0.061
CVE-2026-4209
D-Link DNS-1550-04 account_mgr.cgi cgi_chg_admin_pw command injection
Published 2026-03-16 · Analyzed
9.8EPSS 0.058
CVE-2026-4196
D-Link DNS-1550-04 remote_backup.cgi cgi_set_rsync_server command injection
Published 2026-03-15 · Analyzed
9.8EPSS 0.058
CVE-2026-4207
D-Link DNS-1550-04 system_mgr.cgi cgi_ntp_time command injection
Published 2026-03-16 · Analyzed
9.8EPSS 0.058
CVE-2026-4210
D-Link DNS-1550-04 time_machine.cgi cgi_tm_set_share command injection
Published 2026-03-16 · Analyzed
9.8EPSS 0.055
CVE-2026-4204
D-Link DNS-1550-04 gui_mgr.cgi cgi_mycloud_auto_downlaod command injection
Published 2026-03-16 · Analyzed
9.8EPSS 0.055
CVE-2026-4195
D-Link DNS-1550-04 wizard_mgr.cgi command injection
Published 2026-03-15 · Analyzed
9.8EPSS 0.055
CVE-2026-4205
D-Link DNS-1550-04 app_mgr.cgi FTP_Server_BlockIP_Del command injection
Published 2026-03-16 · Analyzed
9.8EPSS 0.051
CVE-2026-4206
D-Link DNS-1550-04 dsk_mgr.cgi ScanDisk_run_e2fsck command injection
Published 2026-03-16 · Analyzed
9.8EPSS 0.051
CVE-2026-4194
D-Link DNS-1550-04 system_mgr.cgi cgi_set_wto access control
Published 2026-03-15 · Analyzed
9.8EPSS 0.030
CVE-2026-4211
D-Link DNS-1550-04 local_backup_mgr.cgi Local_Backup_Info stack-based overflow
Published 2026-03-16 · Analyzed
9.8EPSS 0.014
CVE-2026-4212
D-Link DNS-1550-04 download_mgr.cgi Downloads_Schedule_Info stack-based overflow
Published 2026-03-16 · Analyzed
9.8EPSS 0.014
CVE-2026-4214
D-Link DNS-1550-04 app_mgr.cgi UPnP_AV_Server_Path_Setting stack-based overflow
Published 2026-03-16 · Analyzed
9.8EPSS 0.014
CVE-2026-4213
D-Link DNS-1550-04 gui_mgr.cgi cgi_myfavorite_verify stack-based overflow
Published 2026-03-16 · Analyzed
9.8EPSS 0.013
CVE-2026-5211
D-Link DNS-1550-04 app_mgr.cgi UPnP_AV_Server_Path_Del stack-based overflow
Published 2026-03-31 · Analyzed
9.0EPSS 0.012
CVE-2026-5213
D-Link DNS-1550-04 account_mgr.cgi cgi_adduser_to_session stack-based overflow
Published 2026-03-31 · Analyzed
9.0EPSS 0.012
CVE-2026-5214
D-Link DNS-1550-04 account_mgr.cgi cgi_addgroup_get_group_quota_minsize stack-based overflow
Published 2026-03-31 · Analyzed
9.0EPSS 0.012
CVE-2026-5212
D-Link DNS-1550-04 webdav_mgr.cgi Webdav_Upload_File stack-based overflow
Published 2026-03-31 · Analyzed
9.0EPSS 0.012
CVE-2026-5311
D-Link DNS-1550-04 file_center.cgi Webdav_Access_List access control
Published 2026-04-01 · Analyzed
5.5EPSS 0.013
CVE-2026-5312
D-Link DNS-1550-04 dsk_mgr.cgi Get_current_raidtype access control
Published 2026-04-01 · Analyzed
5.5EPSS 0.009
CVE-2026-5215
D-Link DNS-1550-04 network_mgr.cgi cgi_get_ipv6 access control
Published 2026-03-31 · Analyzed
5.3EPSS 0.014