Vendor

D-Link

As of , 26 D-Link vulnerabilities are on CISA's list of exploited vulnerabilities, 2 of them used in ransomware campaigns; 1 was added in 2026. Patch first: CVE-2015-2051.

Patch first

Patch first
#VulnerabilityProductOur groupListedDeadlineEPSS
1CVE-2015-2051Remote Code ExecutionD-Link DIR-645 RouterPatch this weekMetasploit module; EPSS 0.97; verified Exploit-DB entry0.97
2CVE-2016-20017Command InjectionD-Link DSL-2750B DevicesPatch this weekMetasploit module; EPSS 0.640.64
3CVE-2019-17621Command ExecutionD-Link DIR-859 RouterPatch this weekMetasploit module; EPSS 0.900.90
4CVE-2016-11021OS Command InjectionD-Link DCS-930L DevicesPatch this weekMetasploit module; EPSS 0.690.69
5CVE-2014-100005Cross-Site Request Forgery (CSRF)D-Link DIR-600 RouterPatch this weekMetasploit module0.43
6CVE-2025-29635Command InjectionD-Link DIR-823XPatch this weekEPSS 0.880.88
7CVE-2022-37055Buffer OverflowD-Link RoutersPatch this weekEPSS 0.560.56
8CVE-2020-25078UnspecifiedD-Link DCS-2530L and DCS-2670L DevicesPatch this weekEPSS 0.980.98
9CVE-2024-0769Path TraversalD-Link DIR-859 RouterPatch this weekEPSS 0.830.83
10CVE-2023-25280OS Command InjectionD-Link DIR-820 RouterPatch this weekEPSS 0.980.98
11CVE-2021-40655Information DisclosureD-Link DIR-605 RouterPatch this weekEPSS 0.870.87
12CVE-2024-3272Use of Hard-Coded CredentialsD-Link Multiple NAS DevicesPatch this weekEPSS 0.980.98
13CVE-2024-3273Command InjectionD-Link Multiple NAS DevicesPatch this weekEPSS 0.990.99
14CVE-2019-20500Command InjectionD-Link DWL-2600AP Access PointPatch this weekEPSS 0.970.97
15CVE-2018-6530OS Command InjectionD-Link Multiple RoutersPatch this weekRansomware use; EPSS 0.970.97
16CVE-2022-26258Remote Code ExecutionD-Link DIR-820LPatch this weekEPSS 0.920.92
17CVE-2019-16057DNS-320 Remote Code ExecutionD-Link DNS-320 Storage DevicePatch this weekRansomware use; EPSS 0.860.86
18CVE-2021-45382Remote Code ExecutionD-Link Multiple RoutersPatch this weekEPSS 0.980.98
19CVE-2019-16920Command InjectionD-Link Multiple RoutersPatch this weekEPSS 0.990.99
20CVE-2020-25506Command InjectionD-Link DNS-320 DevicePatch this weekEPSS 0.990.99
21CVE-2020-25079DCS-2530L and DCS-2670L Command InjectionD-Link DCS-2530L and DCS-2670L DevicesPatch this weekEPSS 0.540.54
22CVE-2013-5223Gateway Cross-Site ScriptingD-Link DSL-2760UPatch this weekEPSS 0.510.51
23CVE-2020-29557Buffer OverflowD-Link DIR-825 R1 DevicesPatch this weekEPSS 0.540.54
24CVE-2022-40799Download of Code Without Integrity CheckD-Link DNR-322LPatch soon0.34
25CVE-2020-9377Remote Command ExecutionD-Link DIR-610 DevicesPatch soon0.21

The next 1, from number 26

Products

  • Multiple Routers3 entries
  • DCS-2530L and DCS-2670L Devices2 entries
  • DIR-859 Router2 entries
  • Multiple NAS Devices2 entries
  • DCS-930L Devices1 entry
  • DIR-300 Router1 entry
  • DIR-600 Router1 entry
  • DIR-605 Router1 entry
  • DIR-610 Devices1 entry
  • DIR-645 Router1 entry
  • DIR-820 Router1 entry
  • DIR-820L1 entry
  • DIR-823X1 entry
  • DIR-825 R1 Devices1 entry
  • DNR-322L1 entry
  • DNS-320 Device1 entry
  • DNS-320 Storage Device1 entry
  • DSL-2750B Devices1 entry
  • DSL-2760U1 entry
  • DWL-2600AP Access Point1 entry
  • Routers1 entry

Added each year

5102021: 2220212022: 101020222023: 2220232024: 6620242025: 5520252026: 112026
Entries CISA added each year, removed ones included. Source: CISA KEV.
Show the numbers
Periodentries added
20212
202210
20232
20246
20255
20261

Used in ransomware