Known vulnerabilities in DIR-600
Vendor:
D-Link
Software:
DIR-600
Software CPE:
cpe:2.3:h:d-link:dir-600:*:*:*:*:*:*:*:*
Website:
https://www.dlink.com/
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114792 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2018-25115 |
CWE-78 | High | - | 04.09.2025 |
SB2025090426 |
||
| #VU112892 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2025-7553 |
CWE-78 | Low | - | 15.07.2025 |
SB2025071519 |
||
| #VU89636 - Cross-Site Request Forgery (CSRF) CVE-2014-100005 |
CWE-352 | Low | 2.17b02 | 17.05.2024 |
SB2014030713 |
||
| #VU4601 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') CVE-2013-6026 |
CWE-113 | Critical | - | 16.01.2017 |
SB2013101201 |