CVE Tools

Dir-615

17 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Dir-615, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.

Dir-615 CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Dir-615 CVEs per month
MonthCVEs
2024-100
2024-110
2024-120
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-071
2025-083
2025-090
2025-100
2025-110
2025-120
2026-014
2026-022
2026-030
2026-040
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 17 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical529%
  • High953%
  • Medium318%

Latest CVEs

The 15 most recently published vulnerabilities affecting Dir-615.

  1. CVE-2026-2152D-Link DIR-615 Web Configuration adv_routing.php os command injection7.2
  2. CVE-2026-2151D-Link DIR-615 DMZ Host Feature adv_firewall.php os command injection7.2
  3. CVE-2026-1506D-Link DIR-615 MAC Filter Configuration adv_mac_filter.php os command injection7.2
  4. CVE-2026-1505D-Link DIR-615 URL Filter set_temp_nodes.php os command injection7.2
  5. CVE-2026-1448D-Link DIR-615 Web Management wiz_policy_3_machine.php os command injection7.2
  6. CVE-2026-0625D-Link DSL/DIR/DNS Authentication Bypass via DNS Configuration Endpoint9.8
  7. CVE-2018-25115D-Link DIR-110/412/600/615/645/815 RCE via service.cgi9.8
  8. CVE-2013-10050D-Link Devices tools_vct.xgi Authenticated RCE8.8
  9. CVE-2013-10059D-Link Routers tools_vct.htm OS Command Injection7.2
  10. CVE-2025-7192D-Link DIR-645 ssdpcgi cgibin ssdpcgi_main command injection6.3
  11. CVE-2024-0717D-Link Good Line Router v2 HTTP GET Request devinfo information disclosure5.3
  12. CVE-2018-10431D-Link DIR-615 2.5.17 devices allow Remote Code Execution via shell metacharacters in the Host field of the System / Traceroute screen.7.2
  13. CVE-2017-11436D-Link DIR-615 before v20.12PTb04 has a second admin account with a 0x1 BACKDOOR value, which might allow remote attackers to obtain access via a TELNET connection.9.8
  14. CVE-2017-7404On the D-Link DIR-615 before v20.12PTb04, if a victim logged in to the Router's Web Interface visits a malicious site from another Browser tab, the malicious site then can send requests to the vict...8.8
  15. CVE-2017-7405On the D-Link DIR-615 before v20.12PTb04, once authenticated, this device identifies the user based on the IP address of his machine. By spoofing the IP address belonging to the victim's host, an a...9.8

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store