Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Dlink

First CVE: Dec 31, 2002Active for: 24 yearsTotal CVEs: 1,880
75.1
VTI Score
TOP TARGET

D-Link's vulnerability footprint spans a broadly represented portfolio of consumer and small-business networking devices, particularly its DIR-series routers and firmware, positioning these internet-facing appliances as a substantial attack surface in the landscape. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit code, consistent with the appeal of accessible embedded devices for remote compromise and lateral pivoting. The exposure recurs through memory-safety and command-injection weakness classes—including stack-based buffer overflows, OS command injection, out-of-bounds writes, and command-injection variants—that are endemic to embedded firmware implementations and parser logic. Defenders should inventory affected D-Link devices across their environment, prioritize patching for internet-reachable instances, and consider network segmentation for older or unsupported models; current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
1,812
Total CVEs
More Total CVEs than 100% of tracked vendors
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
8.3
Avg CVSS Score
Higher Avg CVSS Score than 81% of tracked vendors
1.5%
In CISA KEV
Higher KEV Rate than 99% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Dlink over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 6, 2001
24 years ago
Most Recent CVE
Jul 9, 2026
15 days ago

Products(927 total)

Top CVEs

Signals from CVEs in this vendor scope (1812 CVEs).

1,812 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2024-3273CRITICAL
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DNS-320L, DNS-325, DNS-327L and DNS-340L up to 20240403. Affected is an unkno
Apr 4, 20249.898YESYES
CVE-2020-25506CRITICAL
D-Link DNS-320 FW v2.06B01 Revision Ax is affected by command injection in the system_mgr.cgi component, which can lead to remote arbitrary code execution.
Feb 2, 20219.898YESYES
CVE-2019-16920CRITICAL
Unauthenticated remote code execution occurs in D-Link products such as DIR-655C, DIR-866L, DIR-652, and DHP-1565. The issue occurs when the attacker sends an arbitrary input to a
Sep 27, 20199.898YESYES
CVE-2014-8361CRITICAL
The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request, as exploited in the wild through 2023.
May 1, 20159.898YESYES
CVE-2015-2051HIGH
The D-Link DIR-645 Wired/Wireless Router Rev. Ax with firmware 1.04b12 and earlier allows remote attackers to execute arbitrary commands via a GetDeviceSettings action to the HNAP
Feb 23, 20158.898YESYES
CVE-2024-3272CRITICAL
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as very critical, has been found in D-Link DNS-320L, DNS-325, DNS-327L and DNS-340L up to 20240403. This issue
Apr 4, 20249.897YESYES
CVE-2023-25280CRITICAL
OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload with the ping_addr parameter to ping.ccp.
Mar 16, 20239.897YESYES
CVE-2021-45382CRITICAL
A Remote Command Execution (RCE) vulnerability exists in all series H/W revisions D-link DIR-810L, DIR-820L/LW, DIR-826L, DIR-830L, and DIR-836L routers via the DDNS function in nc
Feb 17, 20229.897YESYES
CVE-2020-25078HIGH
An issue was discovered on D-Link DCS-2530L before 1.06.01 Hotfix and DCS-2670L through 2.02 devices. The unauthenticated /config/getuser endpoint allows for remote administrator p
Sep 2, 20207.597YESYES
CVE-2019-17621CRITICAL
The UPnP endpoint URL /gena.cgi in the D-Link DIR-859 Wi-Fi router 1.05 and 1.06B01 Beta01 allows an Unauthenticated remote attacker to execute system commands as root, by sending
Dec 30, 20199.897YESYES
View all 1,812 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products1,812 CVEs
16%
51%
32%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local34 (1.9%)
Network1,345 (74.2%)
Unknown88 (4.9%)
Physical8 (0.4%)
Adjacent Network337 (18.6%)
Attack Complexity
Low1,692 (93.4%)
High32 (1.8%)
Unknown88 (4.9%)
User Interaction
None1,637 (90.3%)
Unknown88 (4.9%)
Required87 (4.8%)
Privileges Required
Low411 (22.7%)
High125 (6.9%)
None1,188 (65.6%)
Unknown88 (4.9%)

Exploit Exposure

Signals from CVEs in this vendor scope (1812 CVEs).

CISA KEV
28 CVEs
1.5% of CVEs· 99th percentile
Metasploit
25 CVEs
1.4% of CVEs· 97th percentile
Nuclei
33 CVEs
1.8% of CVEs· 95th percentile
ExploitDB
91 CVEs
5.0% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Dlink.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Dlink — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Dlink's Products

View all 14 CNAs →

Top CWEs