Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

70 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (8.7)1.5%—Dlink Dir-605l Firmware4/10/202417/6/2026
A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. It has been declared as critical. This vulnerability affects the function formSetDomainFilter of the file /goform/formSetDomainFilter. The manipulation of the argument curTime leads to buffer overflow. The attack can be initiated remotely. The exploit has been…
AnalizadaAlta (8.8)0.39%—Dlink Dir-605l Firmware13/6/202417/6/2026
D-Link DIR-605L v2.13B01 was discovered to contain a hardcoded password vulnerability in /etc/passwd, which allows attackers to log in as root.
ModificadaAlta (8.8)1.1%—Dlink Dir-605l Firmware11/9/202317/6/2026
Buffer Overflow vulnerability in D-Link DIR-605L, hardware version AX, firmware version 1.17beta and below, allows authorized attackers execute arbitrary code via sending crafted data to the webserver service program.
ModificadaCrítica (9.8)1.2%—Dlink Dir-605l Firmware16/5/202317/6/2026
D-Link DIR-605L firmware version 1.17B01 BETA is vulnerable to stack overflow via /goform/formTcpipSetup,
ModificadaCrítica (9.8)1.2%—Dlink Dir-605l Firmware10/2/202317/6/2026
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /goform/formWPS.
ModificadaCrítica (9.8)1.2%—Dlink Dir-605l Firmware10/2/202317/6/2026
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the FILECODE parameter at /goform/formLogin.
ModificadaCrítica (9.8)1.2%—Dlink Dir-605l Firmware10/2/202317/6/2026
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the config.smtp_email_subject parameter at /goform/formSetEmail.
ModificadaCrítica (9.8)1.2%—Dlink Dir-605l Firmware10/2/202317/6/2026
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSetRoute.
ModificadaCrítica (9.8)1.2%—Dlink Dir-605l Firmware10/2/202317/6/2026
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSetACLFilter.
ModificadaAlta (8.8)1.2%—Dlink Dir-605l Firmware10/2/202317/6/2026
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /goform/formSetWanDhcpplus.
ModificadaAlta (8.8)1.2%—Dlink Dir-605l Firmware10/2/202317/6/2026
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the wan_connected parameter at /goform/formEasySetupWizard3.
ModificadaAlta (8.8)1.2%—Dlink Dir-605l Firmware10/2/202317/6/2026
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSetWanDhcpplus.
ModificadaAlta (8.8)1.3%—Dlink Dir-605l Firmware10/2/202317/6/2026
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /goform/formWlanGuestSetup.
ModificadaAlta (8.8)1.2%—Dlink Dir-605l Firmware10/2/202317/6/2026
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSchedule.
AnalizadaAlta (7.5)87%⚠ Explotación activa💥 ExploitDlink Dir-605l Firmware24/9/202117/6/2026
An informtion disclosure issue exists in D-LINK-DIR-605 B2 Firmware Version : 2.01MT. An attacker can obtain a user name and password by forging a post request to the / getcfg.php page
ModificadaAlta (8.8)7.4%—D-link Dir-619l FirmwareD-link Dir-605l Firmware11/12/201817/6/2026
An issue was discovered in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 and DIR-605L Rev.B 2.12B1 devices. goform/formSysCmd allows remote authenticated users to execute arbitrary OS commands via the sysCmd POST parameter.
ModificadaCrítica (9.8)7.0%—D-link Dir-619l FirmwareD-link Dir-605l Firmware11/12/201817/6/2026
An issue was discovered in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 and DIR-605L Rev.B 2.12B1 devices. There is a stack-based buffer overflow allowing remote attackers to execute arbitrary code without authentication via the goform/formLanguageChange currTime parameter.
ModificadaAlta (7.5)1.4%—Dlink Dir-605l Model B Firmware30/11/201717/6/2026
An issue was discovered on D-Link DIR-605L Model B before FW2.11betaB06_hbrf devices, related to the code that handles the authentication values for HNAP. An attacker can cause a denial of service (device crash) or possibly have unspecified other impact by sending a sufficiently long string in the password field of…
ModificadaAlta (7.5)12%💥 ExploitDlink Dir-605l Firmware15/6/201717/6/2026
On D-Link DIR-605L devices, firmware before 2.08UIBetaB01.bin allows an unauthenticated GET request to trigger a reboot.
AnalizadaCrítica (9.8)100%⚠ Explotación activa💥 ExploitDlink Dir-905l FirmwareDlink Dir-605l FirmwareDlink Dir-600l FirmwareDlink Dir-619l Firmware+221/5/201517/6/2026
The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request, as exploited in the wild through 2023.
Orbitaley — Vulnerabilidades