CVE Tools

Dir-823g Firmware

64 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Dir-823g Firmware, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.

Dir-823g Firmware CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Dir-823g Firmware CVEs per month
MonthCVEs
2024-100
2024-112
2024-121
2025-010
2025-020
2025-032
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-102
2025-112
2025-120
2026-010
2026-020
2026-031
2026-040
2026-050
2026-061
2026-071
2026-080
2026-090

Severity

How the 64 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical1727%
  • High3859%
  • Medium914%

Latest CVEs

The 15 most recently published vulnerabilities affecting Dir-823g Firmware.

  1. CVE-2026-15270D-link DIR-823G Web boa.conf least privilege violation7.5
  2. CVE-2026-11492D-Link DIR-823G vsftpd vsftpd.conf least privilege violation4.3
  3. CVE-2026-4193D-Link DIR-823G goahead UpdateClientInfo access control7.3
  4. CVE-2025-60675A command injection vulnerability exists in the D-Link DIR-823G router firmware DIR823G_V1.0.2B05_20181207.bin in the timelycheck and sysconf binaries, which process the /tmp/new_qos.rule configura...5.4
  5. CVE-2025-60671A command injection vulnerability exists in the D-Link DIR-823G router firmware DIR823G_V1.0.2B05_20181207.bin in the timelycheck and sysconf binaries, which process the /var/system/linux_vlan_rein...5.4
  6. CVE-2025-60332A NULL pointer dereference in the SetWLanRadioSettings function of D-Link DIR-823G A1 v1.0.2B05 allows attackers to cause a Denial of Service (DoS) via a crafted HTTP request.7.5
  7. CVE-2025-60331D-Link DIR-823G A1 v1.0.2B05 was discovered to contain a buffer overflow in the FillMacCloneMac parameter in the /EXCU_SHELL endpoint. This vulnerability allows attackers to cause a Denial of Servi...7.5
  8. CVE-2025-2360D-Link DIR-823G UPnP Service HNAP1 SetUpnpSettings improper authorization7.3
  9. CVE-2025-2359D-Link DIR-823G DDNS Service HNAP1 SetDDNSSettings improper authorization7.3
  10. CVE-2024-13030D-Link DIR-823G Web Management Interface HNAP1 SetVirtualServerSettings access control7.3
  11. CVE-2024-51024D-Link DIR_823G 1.0.2B05 was discovered to contain a command injection vulnerability via the HostName parameter in the SetWanSettings function. This vulnerability allows attackers to execute arbitr...8.0
  12. CVE-2024-51023D-Link DIR_823G 1.0.2B05 was discovered to contain a command injection vulnerability via the Address parameter in the SetNetworkTomographySettings function. This vulnerability allows attackers to e...8.8
  13. CVE-2024-44408D-Link DIR-823G v1.0.2B05_20181207 is vulnerable to Information Disclosure. The device allows unauthorized configuration file downloads, and the downloaded configuration files contain plaintext use...7.5
  14. CVE-2024-33345D-Link DIR-823G A1V1.0.2B05 was found to contain a Null-pointer dereference in the main function of upload_firmware.cgi, which allows remote attackers to cause a Denial of Service (DoS) via a craft...6.5
  15. CVE-2024-27660D-Link DIR-823G A1V1.0.2B05 was discovered to contain a Null-pointer dereferences in sub_41C488(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.6.5

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store