Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
34 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.7) | 13% | — | Dlink Di-8100 Firmware | 13/4/2025 | 17/6/2026 | A vulnerability was found in D-Link DI-8100 16.07.26A1. It has been rated as critical. This issue affects the function auth_asp of the file /auth.asp of the component jhttpd. The manipulation of the argument callback leads to stack-based buffer overflow. The attack needs to be approached within the local network. The… | |
| Analizada | Alta (7.1) | 0.64% | — | Dlink Di-8100 Firmware | 1/4/2025 | 17/6/2026 | D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_net_asp function via the remot_ip parameter. | |
| Analizada | Alta (7.1) | 0.64% | — | Dlink Di-8100 Firmware | 1/4/2025 | 17/6/2026 | D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_road_asp function via the host_ip parameter. | |
| Analizada | Media (5.7) | 0.63% | 💥 PoC | Dlink Di-8100 Firmware | 19/11/2024 | 17/6/2026 | DI-8100 v16.07.26A1 is vulnerable to Buffer Overflow In the ip_position_asp function via the ip parameter. | |
| Modificada | Alta (7.5) | 0.69% | — | Dlink Di-8100 Firmware | 9/9/2024 | 17/6/2026 | D-Link DI-8100 v16.07.26A1 has a stack overflow vulnerability in the dbsrv_asp function. | |
| Analizada | Crítica (9.8) | 3.1% | — | Dlink Di-8100g Firmware | 6/9/2024 | 17/6/2026 | D-Link DI-8100G 17.12.20A1 is vulnerable to Command Injection via msp_info.htm. | |
| Analizada | Crítica (9.8) | 2.9% | — | Dlink Di-8100g Firmware | 6/9/2024 | 17/6/2026 | D-Link DI-8100G 17.12.20A1 is vulnerable to Command Injection via sub47A60C function in the upgrade_filter.asp file | |
| Analizada | Media (5.3) | 4.7% | — | Dlink Di-8100 Firmware | 15/8/2024 | 17/6/2026 | A vulnerability was found in D-Link DI-8100 16.07. It has been classified as critical. This affects the function upgrade_filter_asp of the file upgrade_filter.asp. The manipulation of the argument path leads to command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the… | |
| Analizada | Media (5.3) | 7.8% | — | Dlink Di-8100 Firmware | 3/8/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in D-Link DI-8100 16.07. This issue affects the function msp_info_htm of the file msp_info.htm. The manipulation of the argument cmd leads to command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may… |