Dir 823g
Vendor:
First CVE: Oct 2, 2018 · Active for 7 years
63
Total CVEs
More Total CVEs than 98% of tracked products
7.9
Avg CVEs / Year
Higher CVE frequency than 94% of tracked products
8.3
Avg CVSS
Higher Avg CVSS than 74% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Dir 823g over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 2, 2018
7 years ago
Most Recent CVE
Jul 9, 2026
18 days ago
CVE Severity & Scoring
Dir 823g63 CVEs
11%
57%
32%
All CVEs352,719 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network54 (85.7%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network9 (14.3%)
Attack Complexity
Low61 (96.8%)
High2 (3.2%)
Unknown0 (0.0%)
User Interaction
None62 (98.4%)
Unknown0 (0.0%)
Required1 (1.6%)
Privileges Required
Low11 (17.5%)
High0 (0.0%)
None52 (82.5%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (63 CVEs).
63 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-26613CRITICAL An OS command injection vulnerability in D-Link DIR-823G firmware version 1.02B05 allows unauthorized attackers to execute arbitrary operating system commands via a crafted GET req | Jun 29, 2023 | 9.8 | 47 | NO | NO |
CVE-2020-25367CRITICAL A command injection vulnerability was discovered in the HNAP1 protocol in D-Link DIR-823G devices with firmware V1.0.2B05. An attacker is able to execute arbitrary web scripts via | Nov 4, 2021 | 9.8 | 38 | NO | NO |
CVE-2020-25368CRITICAL A command injection vulnerability was discovered in the HNAP1 protocol in D-Link DIR-823G devices with firmware V1.0.2B05. An attacker is able to execute arbitrary web scripts via | Nov 4, 2021 | 9.8 | 36 | NO | NO |
CVE-2026-11492HIGH A security flaw has been discovered in D-Link DIR-823G 1.0.2B05. The affected element is an unknown function of the file /etc/vsftpd.conf of the component vsftpd. Performing a mani | Jun 8, 2026 | 8.8 | 35 | NO | NO |
CVE-2019-7297CRITICAL An issue was discovered on D-Link DIR-823G devices with firmware through 1.02B03. A command Injection vulnerability allows attackers to execute arbitrary OS commands via shell meta | Jan 31, 2019 | 9.8 | 35 | NO | NO |
CVE-2025-2359CRITICAL A vulnerability classified as critical has been found in D-Link DIR-823G 1.0.2B05_20181207. Affected is the function SetDDNSSettings of the file /HNAP1/ of the component DDNS Servi | Mar 17, 2025 | 9.8 | 33 | NO | NO |
CVE-2022-44808CRITICAL A command injection vulnerability has been found on D-Link DIR-823G devices with firmware version 1.02B03 that allows an attacker to execute arbitrary operating system commands thr | Nov 22, 2022 | 9.8 | 33 | NO | NO |
CVE-2022-43109CRITICAL D-Link DIR-823G v1.0.2 was found to contain a command injection vulnerability in the function SetNetworkTomographySettings. This vulnerability allows attackers to execute arbitrary | Nov 3, 2022 | 9.8 | 33 | NO | NO |
CVE-2026-15270HIGH A weakness has been identified in D-link DIR-823G 1.0.2B05_20181207. Affected by this vulnerability is an unknown functionality of the file /etc/boa/boa.conf of the component Web I | Jul 9, 2026 | 7.5 | 32 | NO | NO |
CVE-2021-43474CRITICAL An Access Control vulnerability exists in D-Link DIR-823G REVA1 1.02B05 (Lastest) via any parameter in the HNAP1 function | Apr 7, 2022 | 9.8 | 32 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (63 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (63 CVEs).
Media Mentions
Signals from CVEs in this product scope (63 CVEs).
Top CNAs Publishing CVEs For Dir 823g
Top CWEs
Versions
No cataloged versions.