Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
–

1843 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaCrítica (9.8)0.66%—Dlink Dir-1253 Firmware5/3/202617/6/2026
An issue in D-Link DIR-1253 MESH V1.6.1684 allows an attacker to escalate privileges via the etc/shadow.sample component
AnalizadaCrítica (9.8)0.66%—Dlink Dir-513 Firmware5/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetEnableWizard.
AnalizadaCrítica (9.8)0.66%—Dlink Dir-513 Firmware5/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetMACFilter.
AnalizadaCrítica (9.8)0.69%—Dlink Dir-513 Firmware5/3/202617/6/2026
D-Link DIR-513 version 1.10 contains a critical-level vulnerability. When processing POST requests related to verification codes in /goform/formLogin, it enters /goform/getAuthCode but fails to filter the value of the FILECODE parameter, resulting in a path traversal vulnerability.
AnalizadaCrítica (9.8)0.81%—Dlink Dir-513 Firmware5/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetDDNS.
AnalizadaCrítica (9.8)0.66%—Dlink Dir-513 Firmware5/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSchedule.
AnalizadaCrítica (9.8)0.50%—Dlink Dir-513 Firmware4/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formLogin,goform/getAuthCode.
AnalizadaCrítica (9.8)0.50%—Dlink Dir-513 Firmware4/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curtime parameter to the goform/formEasySetupWWConfig component
AnalizadaCrítica (9.8)0.50%—Dlink Dir-513 Firmware4/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formLogin.
AnalizadaCrítica (9.8)0.63%—Dlink Dir-513 Firmware4/3/202617/6/2026
D-link Dir-513 A1FW110 is vulnerable to Buffer Overflow in the function formTcpipSetup.
AnalizadaCrítica (9.8)3.4%—Dlink Dir-513 Firmware4/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the goform/formDeviceReboot.
AnalizadaCrítica (9.8)0.50%—Dlink Dir-513 Firmware4/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formEasySetupWizard.
AnalizadaCrítica (9.8)0.52%—Dlink Dir-513 Firmware4/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formAdvNetwork.
AnalizadaCrítica (9.8)0.61%—Dlink Dir-513 Firmware4/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formAutoDetecWAN_wizard4.
AnalizadaCrítica (9.8)0.66%—Dlink Dir-513 Firmware4/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via POST to the goform/formAdvFirewall component.
AnalizadaAlta (8.9)6.7%—Dlink Dir-868l Firmware3/3/202617/6/2026
A flaw has been found in D-Link DIR-868L 110b03. This affects the function sub_1BF84 of the component SSDP Service. This manipulation of the argument ST causes os command injection. It is possible to initiate the attack remotely. The exploit has been published and may be used. This vulnerability only affects products…
ModificadaCrítica (9.8)0.73%—Dlink Dir-513 Firmware3/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard51.
ModificadaCrítica (9.8)0.63%—Dlink Dir-513 Firmware3/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard55.
ModificadaCrítica (9.8)0.73%—Dlink Dir-513 Firmware3/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetQoS.
ModificadaCrítica (9.8)0.60%—Dlink Dir-513 Firmware3/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWANType_Wizard5.
ModificadaCrítica (9.8)0.73%—Dlink Dir-513 Firmware3/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetPortTr.
ModificadaCrítica (9.8)0.60%—Dlink Dir-513 Firmware3/3/202617/6/2026
Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetDomainFilter.
AplazadaAlta (8.2)0.13%—Dlink Dsl-124AI26/2/20265/7/2026
Improper session management in D-Link Wireless N 300 ADSL2+ Modem Router DSL-124 ME_1.00 allows attackers to execute a session hijacking attack via spoofing the IP address of an authenticated user.
AnalizadaAlta (7.4)1.2%—Dlink Dwr-m960 Firmware23/2/202617/6/2026
A vulnerability was found in D-Link DWR-M960 1.01.07. This vulnerability affects the function sub_460F30 of the file /boafrm/formDateReboot of the component Scheduled Reboot Configuration Endpoint. The manipulation of the argument submit-url results in stack-based buffer overflow. The attack may be performed from…
AnalizadaAlta (7.4)1.2%—Dlink Dwr-m960 Firmware23/2/202617/6/2026
A vulnerability has been found in D-Link DWR-M960 1.01.07. This affects the function sub_4196C4 of the file /boafrm/formVpnConfigSetup of the component VPN Configuration Endpoint. The manipulation of the argument submit-url leads to stack-based buffer overflow. The attack is possible to be carried out remotely. The…