D Link

First CVE: Dec 31, 2002Active for: 24 yearsTotal CVEs: 1,880

D-Link's vulnerability footprint centers on a moderate portfolio of consumer and small-business networking devices, including routers and residential gateways such as the DIR and DSL lines, which are often deployed with extended operational lifespans. The exposure spans input-validation and authentication weaknesses typical of embedded network appliances, reflecting the constraints of firmware-based implementations. Defenders should prioritize inventory of affected models and assess management-interface exposure, particularly for end-of-life units; current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
1,812
Total CVEs
More Total CVEs than 99% of tracked vendors
0.1
Avg CVEs / Product / Year
Bottom 1%
8.3
Avg CVSS Score
Higher Avg CVSS Score than 73% of tracked vendors
1.5%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by D Link over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 6, 2001
24 years ago
Most Recent CVE
Jul 9, 2026
15 days ago

Products(128 total)

Top CVEs

Signals from CVEs in this vendor scope (1812 CVEs).

1,812 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DNS-320L, DNS-325, DNS-327L and DNS-340L up to 20240403. Affected is an unkno
Apr 4, 20249.898YESYES
D-Link DNS-320 FW v2.06B01 Revision Ax is affected by command injection in the system_mgr.cgi component, which can lead to remote arbitrary code execution.
Feb 2, 20219.898YESYES
Unauthenticated remote code execution occurs in D-Link products such as DIR-655C, DIR-866L, DIR-652, and DHP-1565. The issue occurs when the attacker sends an arbitrary input to a
Sep 27, 20199.898YESYES
The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request, as exploited in the wild through 2023.
May 1, 20159.898YESYES
The D-Link DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remote attackers to execute arbitrary commands via a GetDeviceSettings action to the HNAP
Feb 23, 20158.898YESYES
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as very critical, has been found in D-Link DNS-320L, DNS-325, DNS-327L and DNS-340L up to 20240403. This issue
Apr 4, 20249.897YESYES
OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload with the ping_addr parameter to ping.ccp.
Mar 16, 20239.897YESYES
A Remote Command Execution (RCE) vulnerability exists in all series H/W revisions D-link DIR-810L, DIR-820L/LW, DIR-826L, DIR-830L, and DIR-836L routers via the DDNS function in nc
Feb 17, 20229.897YESYES
An issue was discovered on D-Link DCS-2530L before 1.06.01 Hotfix and DCS-2670L through 2.02 devices. The unauthenticated /config/getuser endpoint allows for remote administrator p
Sep 2, 20207.597YESYES
The UPnP endpoint URL /gena.cgi in the D-Link DIR-859 Wi-Fi router 1.05 and 1.06B01 Beta01 allows an Unauthenticated remote attacker to execute system commands as root, by sending
Dec 30, 20199.897YESYES

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products1,812 CVEs
Severity distribution among all CVEs352,294 CVEs
LowMediumHighCritical
Attack Vector
Local34 (1.9%)
Network1,345 (74.2%)
Unknown88 (4.9%)
Physical8 (0.4%)
Adjacent Network337 (18.6%)
Attack Complexity
Low1,692 (93.4%)
High32 (1.8%)
Unknown88 (4.9%)
User Interaction
None1,637 (90.3%)
Unknown88 (4.9%)
Required87 (4.8%)
Privileges Required
Low411 (22.7%)
High125 (6.9%)
None1,188 (65.6%)
Unknown88 (4.9%)

Exploit Exposure

Signals from CVEs in this vendor scope (1812 CVEs).

CISA KEV
28 CVEs
1.5% of CVEs· Bottom 1%
Metasploit
25 CVEs
1.4% of CVEs· 97th percentile
Nuclei
33 CVEs
1.8% of CVEs· 95th percentile
ExploitDB
91 CVEs
5.0% of CVEs· 78th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by D Link.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by D Link — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For D Link's Products

Top CWEs