VARIoT IoT exploits database

VAR-E-201511-0003 | No CVE | Cambium Networks ePMP 1000 Multiple Command Injection and Authorization Bypass Vulnerabilities | No EDB ID |
Cambium Networks ePMP 1000 is prone to multiple command-injection vulnerabilities and multiple authorization-bypass vulnerabilities.
Exploiting these issues could allow an attacker to execute arbitrary commands, or to bypass security restrictions and perform unauthorized actions to gain full control of the affected device. Failed exploit attempts will likely result in denial-of-service conditions.
VAR-E-201511-0646 | No CVE | D-Link DIR-615 - Multiple Buffer Overflow Vulnerabilities - Hardware remote Exploit | EDB ID: 38723 |
D-Link DIR-615 - Multiple Buffer Overflow Vulnerabilities. CVE-130404 . remote exploit for Hardware platform
VAR-E-201511-0647 | No CVE | D-Link DIR-815 - Multiple Vulnerabilities - Hardware remote Exploit | EDB ID: 38721 |
D-Link DIR-815 - Multiple Vulnerabilities. CVE-130406 . remote exploit for Hardware platform
VAR-E-201511-0650 | No CVE | D-Link DIR-601 - Command Injection - Hardware remote Exploit | EDB ID: 38724 |
D-Link DIR-601 - Command Injection. CVE-130407 . remote exploit for Hardware platform
VAR-E-201511-0652 | No CVE | D-Link DIR-645 - Multiple UPNP Vulnerabilities - Hardware remote Exploit | EDB ID: 38722 |
D-Link DIR-645 - Multiple UPNP Vulnerabilities. CVE-130410 . remote exploit for Hardware platform
VAR-E-201511-0648 | No CVE | D-Link DIR-866L - Multiple Buffer Overflow Vulnerabilities - Hardware remote Exploit | EDB ID: 38717 |
D-Link DIR-866L - Multiple Buffer Overflow Vulnerabilities.. remote exploit for Hardware platform
VAR-E-201511-0651 | No CVE | D-Link DIR-825 (vC) - Multiple Vulnerabilities - Hardware remote Exploit | EDB ID: 38718 |
D-Link DIR-825 (vC) - Multiple Vulnerabilities. CVE-130403 . remote exploit for Hardware platform
VAR-E-201511-0653 | No CVE | D-Link DGL5500 - HNAP Buffer Overflow - Hardware remote Exploit | EDB ID: 38726 |
D-Link DGL5500 - HNAP Buffer Overflow. CVE-130408 . remote exploit for Hardware platform
VAR-E-201511-0018 | No CVE | D-Link DIR-817LW - Multiple Vulnerabilities - Hardware remote Exploit | EDB ID: 38720 |
D-Link DIR-817LW - Multiple Vulnerabilities. CVE-130399 . remote exploit for Hardware platform
VAR-E-201511-0014 | No CVE | D-Link DIR-866L - Multiple Buffer Overflow Vulnerabilities - Hardware remote Exploit | EDB ID: 38717 |
D-Link DIR-866L - Multiple Buffer Overflow Vulnerabilities.. remote exploit for Hardware platform
VAR-E-201511-0013 | No CVE | D-Link DIR-825 (vC) - Multiple Vulnerabilities - Hardware remote Exploit | EDB ID: 38718 |
D-Link DIR-825 (vC) - Multiple Vulnerabilities. CVE-130403 . remote exploit for Hardware platform
VAR-E-201511-0649 | No CVE | D-Link DIR-817LW - Multiple Vulnerabilities - Hardware remote Exploit | EDB ID: 38720 |
D-Link DIR-817LW - Multiple Vulnerabilities. CVE-130399 . remote exploit for Hardware platform
VAR-E-201511-0010 | No CVE | D-Link DIR-615 - Multiple Buffer Overflow Vulnerabilities - Hardware remote Exploit | EDB ID: 38723 |
D-Link DIR-615 - Multiple Buffer Overflow Vulnerabilities. CVE-130404 . remote exploit for Hardware platform
VAR-E-201511-0021 | No CVE | D-Link DIR-601 - Command Injection - Hardware remote Exploit | EDB ID: 38724 |
D-Link DIR-601 - Command Injection. CVE-130407 . remote exploit for Hardware platform
VAR-E-201511-0017 | No CVE | D-Link DIR-645 - Multiple UPNP Vulnerabilities - Hardware remote Exploit | EDB ID: 38722 |
D-Link DIR-645 - Multiple UPNP Vulnerabilities. CVE-130410 . remote exploit for Hardware platform
VAR-E-201511-0012 | No CVE | D-Link DGL5500 - HNAP Buffer Overflow - Hardware remote Exploit | EDB ID: 38726 |
D-Link DGL5500 - HNAP Buffer Overflow. CVE-130408 . remote exploit for Hardware platform
VAR-E-201511-0016 | No CVE | D-Link DIR-815 - Multiple Vulnerabilities - Hardware remote Exploit | EDB ID: 38721 |
D-Link DIR-815 - Multiple Vulnerabilities. CVE-130406 . remote exploit for Hardware platform
VAR-E-201511-0153 |
CVE-2015-5999 |
D-Link DIR-816L Wireless Router - Cross-Site Request Forgery - Hardware webapps Exploit
Related entries in the VARIoT vulnerabilities database: VAR-201511-0048 | EDB ID: 38707 |
D-Link DIR-816L Wireless Router - Cross-Site Request Forgery. CVE-2015-5999CVE-130252 . webapps exploit for Hardware platform
VAR-E-201511-0005 | No CVE | Dlink DIR-825 Multiple Buffer Overflow and Directory Traversal Vulnerabilities | No EDB ID |
Dlink DIR-825 is prone to multiple buffer-overflow vulnerabilities and a directory-traversal vulnerability.
Attackers may leverage these issues to execute arbitrary code in the context of the affected device and to obtain sensitive information. Failed exploits may result in denial-of-service conditions.
VAR-E-201511-0599 | No CVE | D-Link DIR-615 'PING' and 'Send Email' Multiple Buffer Overflow Vulnerabilities | No EDB ID |
D-Link DIR-615 is prone to multiple buffer-overflow vulnerabilities because it fails to perform boundary checks before copying user-supplied data to insufficiently sized memory buffer.
Attackers may leverage these issues to execute arbitrary code in the context of the affected device. Failed exploits may result in denial-of-service conditions.