📦 Dir 878 Firmware

by Dlink

🔍 What is Dir 878 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-27720

CRITICAL CVSS 9.8 Apr 9, 2023

CVE-2023-27720 is a critical stack overflow vulnerability in D-Link DIR878 routers that allows attackers to cause denial of service or execute arbitrary code via crafted payloads. This affects all use...

CVE-2023-24799

CRITICAL CVSS 9.8 Apr 7, 2023

CVE-2023-24799 is a critical stack overflow vulnerability in D-Link DIR878 routers that allows attackers to cause denial of service or execute arbitrary code via crafted network requests. This affects...

CVE-2021-30072

CRITICAL CVSS 9.8 Apr 2, 2021

This vulnerability allows unauthenticated attackers to execute arbitrary code on D-Link DIR-878 routers via a stack-based buffer overflow in the prog.cgi component. Attackers can potentially take full...

CVE-2024-48630

HIGH CVSS 8.0 Oct 17, 2024

This vulnerability allows remote attackers to execute arbitrary operating system commands on affected D-Link routers via command injection in the MacAddress parameter. Attackers can exploit this by se...

CVE-2024-48632

HIGH CVSS 8.0 Oct 17, 2024

This CVE describes multiple command injection vulnerabilities in D-Link DIR-882 and DIR-878 routers that allow attackers to execute arbitrary operating system commands via crafted POST requests. Attac...

CVE-2024-48634

HIGH CVSS 8.0 Oct 17, 2024

This CVE describes a command injection vulnerability in D-Link DIR-882 and DIR-878 routers that allows attackers to execute arbitrary operating system commands via a crafted POST request to the SetWLa...

CVE-2024-48636

HIGH CVSS 8.0 Oct 17, 2024

This CVE describes a command injection vulnerability in D-Link DIR-882 and DIR-878 routers that allows attackers to execute arbitrary operating system commands via a crafted POST request to the VLAN c...

CVE-2024-48638

HIGH CVSS 8.0 Oct 17, 2024

This CVE describes a command injection vulnerability in specific D-Link router models that allows attackers to execute arbitrary operating system commands by sending a crafted POST request. Attackers ...

CVE-2022-1262

HIGH CVSS 7.8 Apr 11, 2022

CVE-2022-1262 is a command injection vulnerability in the protest binary that allows authenticated attackers with CLI access to execute arbitrary commands with root privileges. This affects systems ru...

CVE-2025-60673

MEDIUM CVSS 6.5 Nov 13, 2025

This CVE describes an unauthenticated command injection vulnerability in D-Link DIR-878A1 router firmware that allows remote attackers to execute arbitrary commands on affected devices. Attackers can ...

CVE-2025-60674

MEDIUM CVSS 6.8 Nov 13, 2025

A stack buffer overflow vulnerability in D-Link DIR-878A1 router firmware allows attackers with physical access or control over a USB device to potentially execute arbitrary code. The vulnerability oc...

CVE-2025-60676

MEDIUM CVSS 6.5 Nov 13, 2025

This vulnerability allows unauthenticated remote attackers to execute arbitrary commands on D-Link DIR-878A1 routers by exploiting a command injection flaw in the SetNetworkSettings functionality. It ...

CVE-2025-0481

MEDIUM CVSS 5.3 Jan 15, 2025

This vulnerability in D-Link DIR-878 routers allows remote attackers to access sensitive information through the /dllog.cgi endpoint via HTTP POST requests. It affects users running firmware version 1...