Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2989▼ 73 respecto a la semana anterior
Críticas / altas1415▲ 65 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
–

44 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.2)1.4%—Dlink Dir-882 A1 Firmware23/12/202217/6/2026
D-Link DIR-882 DIR882A1_FW130B06, DIR-878 DIR_878_FW1.30B08 was discovered to contain a stack overflow via the Password parameter in the SetQuickVPNSettings module.
ModificadaAlta (7.2)1.4%—Dlink Dir-882 A1 Firmware23/12/202217/6/2026
D-Link DIR-882 DIR882A1_FW130B06, DIR-878 DIR_878_FW1.30B08 was discovered to contain a stack overflow via the Password parameter in the SetDynamicDNSSettings module.
ModificadaAlta (7.2)1.4%—Dlink Dir-882 A1 Firmware23/12/202217/6/2026
D-Link DIR-882 DIR882A1_FW130B06, DIR-878 DIR_878_FW1.30B08 was discovered to contain a stack overflow via the PSK parameter in the SetQuickVPNSettings module.
ModificadaAlta (7.2)1.5%—Dlink Dir-882 A1 Firmware23/12/202217/6/2026
D-Link DIR-882 DIR882A1_FW130B06, DIR-878 DIR_878_FW1.30B08 was discovered to contain a stack overflow via the Password parameter in the SetWanSettings module.
ModificadaAlta (7.2)1.5%—Dlink Dir-882 A1 Firmware23/12/202217/6/2026
D-Link DIR-882 DIR882A1_FW130B06, DIR-878 DIR_878_FW1.30B08 was discovered to contain a stack overflow via the Password parameter in the SetWan2Settings module.
ModificadaCrítica (9.8)1.3%—Dlink Dir-882 Firmware22/11/202217/6/2026
D-Link DIR-882 1.10B02 and 1.20B06 is vulnerable to Buffer Overflow via webGetVarString.
ModificadaCrítica (9.8)1.2%—Dlink Dir-882 Firmware22/11/202217/6/2026
D-Link DIR-882 1.10B02 and 1.20B06 is vulnerable to Buffer Overflow.
ModificadaCrítica (9.8)1.3%—Dlink Dir-882 Firmware22/11/202217/6/2026
D-Link DIR-882 1.10B02 and1.20B06 is vulnerable to Buffer Overflow via the websRedirect function.
ModificadaCrítica (9.8)3.5%—Dlink Dir-882 Firmware10/5/202217/6/2026
A command injection vulnerability in the component /SetTriggerLEDBlink/Blink of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileges to root via a crafted payload.
ModificadaCrítica (9.8)3.5%—Dlink Dir-882 Firmware10/5/202217/6/2026
A command injection vulnerability in the component /setnetworksettings/SubnetMask of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileges to root via a crafted payload.
ModificadaCrítica (9.8)3.5%—Dlink Dir-882 Firmware10/5/202217/6/2026
A command injection vulnerability in the component /setnetworksettings/IPAddress of D-Link DIR882 DIR882A1_FW130B06 allows attackers to escalate privileges to root via a crafted payload.
ModificadaCrítica (9.8)5.3%—Dlink Dir-882 Firmware2/5/202217/6/2026
D-link 882 DIR882A1_FW130B06 was discovered to contain a command injection vulnerability in`/usr/bin/cli.
ModificadaAlta (7.8)2.2%—Dlink Dir-1360 FirmwareDlink Dir-1760 FirmwareDlink Dir-1960 FirmwareDlink Dir-2640 Firmware+611/4/202217/6/2026
A command injection vulnerability in the protest binary allows an attacker with access to the remote command line interface to execute arbitrary commands as root.
ModificadaCrítica (9.8)3.7%—Dlink Dir-882 Firmware4/2/202217/6/2026
D-Link device DIR_882 DIR_882_FW1.30B06_Hotfix_02 was discovered to contain a command injection vulnerability in the LocalIPAddress parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted HNAP1 POST request.
ModificadaCrítica (9.8)4.6%—Dlink Dir-882 Firmware4/2/202217/6/2026
D-Link device DIR_882 DIR_882_FW1.30B06_Hotfix_02 was discovered to contain a command injection vulnerability in the twsystem function. This vulnerability allows attackers to execute arbitrary commands via a crafted HNAP1 POST request.
ModificadaCrítica (9.8)4.0%—Dlink Dir-878 FirmwareDlink Dir-882 Firmware4/2/202217/6/2026
D-Link devices DIR_878 DIR_878_FW1.30B08_Hotfix_02 and DIR_882 DIR_882_FW1.30B06_Hotfix_02 were discovered to contain a command injection vulnerability in the system function. This vulnerability allows attackers to execute arbitrary commands via a crafted HNAP1 POST request.
ModificadaAlta (8.8)2.8%—D-link Dir-867 FirmwareD-link Dir-878 FirmwareD-link Dir-882 Firmware23/7/202017/6/2026
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.20B10_BETA. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of HNAP requests. The issue…
ModificadaAlta (8.8)80%—Dlink Dir-878 FirmwareDlink Dir-882 FirmwareDlink Dir-867 Firmware23/3/202017/6/2026
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.10B04. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of HNAP login requests. The issue…
ModificadaAlta (8.8)77%—Dlink Dir-878 FirmwareDlink Dir-882 FirmwareDlink Dir-867 Firmware23/3/202017/6/2026
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.10B04. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of HNAP login requests. The issue…
Orbitaley — Vulnerabilidades