Dir-823g firmware
This hub aggregates every CVE we track for Dir-823g firmware, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
64
CVEs tracked
17
Critical
38
High
0
In CISA KEV
Severity distribution
HIGH38CRITICAL17MEDIUM9
Monthly trend
1
0
2
1
0
0
2
0
0
0
0
0
0
2
2
0
0
0
1
0
0
1
1
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Dir-823g firmware.
- CVE-2026-15270D-link DIR-823G Web boa.conf least privilege violation7.5
- CVE-2026-11492D-Link DIR-823G vsftpd vsftpd.conf least privilege violation4.3
- CVE-2026-4193D-Link DIR-823G goahead UpdateClientInfo access control7.3
- CVE-2025-60675A command injection vulnerability exists in the D-Link DIR-823G router firmware DIR823G_V1.0.2B05_20181207.bin in the timelycheck and sysconf binaries, which process the /tmp/new_qos.rule configura...5.4
- CVE-2025-60671A command injection vulnerability exists in the D-Link DIR-823G router firmware DIR823G_V1.0.2B05_20181207.bin in the timelycheck and sysconf binaries, which process the /var/system/linux_vlan_rein...5.4
- CVE-2025-60331D-Link DIR-823G A1 v1.0.2B05 was discovered to contain a buffer overflow in the FillMacCloneMac parameter in the /EXCU_SHELL endpoint. This vulnerability allows attackers to cause a Denial of Servi...7.5
- CVE-2025-60332A NULL pointer dereference in the SetWLanRadioSettings function of D-Link DIR-823G A1 v1.0.2B05 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.7.5
- CVE-2025-2360D-Link DIR-823G UPnP Service HNAP1 SetUpnpSettings improper authorization7.3
- CVE-2025-2359D-Link DIR-823G DDNS Service HNAP1 SetDDNSSettings improper authorization7.3
- CVE-2024-13030D-Link DIR-823G Web Management Interface HNAP1 SetVirtualServerSettings access control7.3
- CVE-2024-51023D-Link DIR_823G 1.0.2B05 was discovered to contain a command injection vulnerability via the Address parameter in the SetNetworkTomographySettings function. This vulnerability allows attackers to e...8.8
- CVE-2024-51024D-Link DIR_823G 1.0.2B05 was discovered to contain a command injection vulnerability via the HostName parameter in the SetWanSettings function. This vulnerability allows attackers to execute arbitr...8.0
- CVE-2024-44408D-Link DIR-823G v1.0.2B05_20181207 is vulnerable to Information Disclosure. The device allows unauthorized configuration file downloads, and the downloaded configuration files contain plaintext use...7.5
- CVE-2024-33345D-Link DIR-823G A1V1.0.2B05 was found to contain a Null-pointer dereference in the main function of upload_firmware.cgi, which allows remote attackers to cause a Denial of Service (DoS) via a craft...6.5
- CVE-2024-27657D-Link DIR-823G A1V1.0.2B05 was discovered to contain a buffer overflow via the User-Agent parameter. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input, and...8.8
Product normalization is registry-driven with AI assist and human review. How it works