Known vulnerabilities in DIR-645
Vendor:
D-Link
Software:
DIR-645
Software CPE:
cpe:2.3:h:d-link:dir-645:*:*:*:*:*:*:*:*
Website:
https://www.dlink.com/
Total vulnerabilities:
6
Public exploits:
2
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114792 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2018-25115 |
CWE-78 | High | - | 04.09.2025 |
SB2025090426 |
||
| #VU112892 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2025-7553 |
CWE-78 | Low | - | 15.07.2025 |
SB2025071519 |
||
| #VU112891 - Command injection CVE-2025-7192 |
CWE-77 | Medium | - | 15.07.2025 |
SB2025071514 |
||
| #VU16535 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2015-2051 |
CWE-78 | Critical | - | 14.12.2018 |
SB2015021302 |
||
| #VU10024 - Improper input validation |
CWE-20 | High | - | 16.01.2018 |
SB2018011604 |
||
| #VU4601 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') CVE-2013-6026 |
CWE-113 | Critical | - | 16.01.2017 |
SB2013101201 |