D Link Dns 327l
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in D Link Dns 327l.
By the Year
In 2026 there have been 4 vulnerabilities in D Link Dns 327l with an average score of 8.6 out of ten.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 4 | 8.63 |
It may take a day or so for new Dns 327l vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent D Link Dns 327l Security Vulnerabilities
OS Command Injection via usb_device CGI on D-Link DNS-32xL Series
CVE-2026-82691
9.4 - Critical
- August 31, 2026
A vulnerability has been found in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 20260717. Affected by this issue is some unknown functionality of the file /cgi-bin/usb_device.cgi of the component CGI Handler. Such manipulation of the argument f_ups_ip leads to os command injection. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.
Shell injection
D-Link DNS-327L/DNS-340L: os Command Injection via CGI Argument f_dev (remote)
CVE-2026-82690
9.4 - Critical
- August 31, 2026
A flaw has been found in D-Link DNS-327L and DNS-340L up to 20260717. Affected by this vulnerability is an unknown functionality of the file /cgi-bin/ve_mgr.cgi. This manipulation of the argument f_dev causes os command injection. The attack is possible to be carried out remotely. The exploit has been published and may be used.
Shell injection
D-Link DNS Router OS Command Injection via ISO Image Handler (CVE-2026-82689)
CVE-2026-82689
9.4 - Critical
- August 31, 2026
A vulnerability was detected in D-Link DNS-320L, DNS-327L, DNS-340L and DNS-345 up to 20260717. Affected is an unknown function of the file /cgi-bin/isomount_mgr.cgi of the component ISO Image Handler. The manipulation of the argument upIsoRootPath results in os command injection. The attack can be executed remotely. The exploit is now public and may be used.
Shell injection
D-Link DNS- series cmdinject in remote_backup.cgi
CVE-2026-16448
6.3 - Medium
- July 21, 2026
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20260205. The affected element is the function cgi_check_rsync_rw of the file /cgi-bin/remote_backup.cgi. The manipulation of the argument ip results in command injection. The attack can be executed remotely. The exploit has been made public and could be used.
Command Injection
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for D Link Dns 327l or by D Link? Click the Watch button to subscribe.