Vulnerabilities (CVE)

Filtered by vendor Dlink Subscribe
Filtered by product Dir-850l
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-14419 1 Dlink 2 Dir-850l, Dir-850l Firmware 2023-11-17 4.3 MEDIUM 5.9 MEDIUM
The D-Link NPAPI extension, as used on D-Link DIR-850L REV. A (with firmware through FW114WWb07_h2ab_beta1) and REV. B (with firmware through FW208WWb02) devices, participates in mydlink Cloud Services by establishing a TCP relay service for HTTP, even though a TCP relay service for HTTPS is also established.
CVE-2017-14420 1 Dlink 2 Dir-850l, Dir-850l Firmware 2023-11-17 4.3 MEDIUM 5.9 MEDIUM
The D-Link NPAPI extension, as used on D-Link DIR-850L REV. A (with firmware through FW114WWb07_h2ab_beta1) and REV. B (with firmware through FW208WWb02) devices, does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
CVE-2021-46379 1 Dlink 2 Dir-850l, Dir-850l Firmware 2022-05-11 5.8 MEDIUM 6.1 MEDIUM
DLink DIR850 ET850-1.08TRb03 is affected by an incorrect access control vulnerability through URL redirection to untrusted site.