Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2738▼ 488 respecto a la semana anterior
Críticas / altas1301▼ 189 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)229▼ 273 respecto a la semana anterior
1843 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.8) | 0.66% | — | Dlink Dir-1253 Firmware | 5/3/2026 | 17/6/2026 | An issue in D-Link DIR-1253 MESH V1.6.1684 allows an attacker to escalate privileges via the etc/shadow.sample component | |
| Analizada | Crítica (9.8) | 0.66% | — | Dlink Dir-513 Firmware | 5/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetEnableWizard. | |
| Analizada | Crítica (9.8) | 0.66% | — | Dlink Dir-513 Firmware | 5/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetMACFilter. | |
| Analizada | Crítica (9.8) | 0.69% | — | Dlink Dir-513 Firmware | 5/3/2026 | 17/6/2026 | D-Link DIR-513 version 1.10 contains a critical-level vulnerability. When processing POST requests related to verification codes in /goform/formLogin, it enters /goform/getAuthCode but fails to filter the value of the FILECODE parameter, resulting in a path traversal vulnerability. | |
| Analizada | Crítica (9.8) | 0.81% | — | Dlink Dir-513 Firmware | 5/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetDDNS. | |
| Analizada | Crítica (9.8) | 0.66% | — | Dlink Dir-513 Firmware | 5/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSchedule. | |
| Analizada | Crítica (9.8) | 0.50% | — | Dlink Dir-513 Firmware | 4/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formLogin,goform/getAuthCode. | |
| Analizada | Crítica (9.8) | 0.50% | — | Dlink Dir-513 Firmware | 4/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curtime parameter to the goform/formEasySetupWWConfig component | |
| Analizada | Crítica (9.8) | 0.50% | — | Dlink Dir-513 Firmware | 4/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formLogin. | |
| Analizada | Crítica (9.8) | 0.63% | — | Dlink Dir-513 Firmware | 4/3/2026 | 17/6/2026 | D-link Dir-513 A1FW110 is vulnerable to Buffer Overflow in the function formTcpipSetup. | |
| Analizada | Crítica (9.8) | 3.4% | — | Dlink Dir-513 Firmware | 4/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the goform/formDeviceReboot. | |
| Analizada | Crítica (9.8) | 0.50% | — | Dlink Dir-513 Firmware | 4/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formEasySetupWizard. | |
| Analizada | Crítica (9.8) | 0.52% | — | Dlink Dir-513 Firmware | 4/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formAdvNetwork. | |
| Analizada | Crítica (9.8) | 0.61% | — | Dlink Dir-513 Firmware | 4/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formAutoDetecWAN_wizard4. | |
| Analizada | Crítica (9.8) | 0.66% | — | Dlink Dir-513 Firmware | 4/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via POST to the goform/formAdvFirewall component. | |
| Analizada | Alta (8.9) | 6.7% | — | Dlink Dir-868l Firmware | 3/3/2026 | 17/6/2026 | A flaw has been found in D-Link DIR-868L 110b03. This affects the function sub_1BF84 of the component SSDP Service. This manipulation of the argument ST causes os command injection. It is possible to initiate the attack remotely. The exploit has been published and may be used. This vulnerability only affects products… | |
| Modificada | Crítica (9.8) | 0.73% | — | Dlink Dir-513 Firmware | 3/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard51. | |
| Modificada | Crítica (9.8) | 0.63% | — | Dlink Dir-513 Firmware | 3/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard55. | |
| Modificada | Crítica (9.8) | 0.73% | — | Dlink Dir-513 Firmware | 3/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetQoS. | |
| Modificada | Crítica (9.8) | 0.60% | — | Dlink Dir-513 Firmware | 3/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWANType_Wizard5. | |
| Modificada | Crítica (9.8) | 0.73% | — | Dlink Dir-513 Firmware | 3/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetPortTr. | |
| Modificada | Crítica (9.8) | 0.60% | — | Dlink Dir-513 Firmware | 3/3/2026 | 17/6/2026 | Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetDomainFilter. | |
| Aplazada | Alta (8.2) | 0.13% | — | Dlink Dsl-124AI | 26/2/2026 | 5/7/2026 | Improper session management in D-Link Wireless N 300 ADSL2+ Modem Router DSL-124 ME_1.00 allows attackers to execute a session hijacking attack via spoofing the IP address of an authenticated user. | |
| Analizada | Alta (7.4) | 1.2% | — | Dlink Dwr-m960 Firmware | 23/2/2026 | 17/6/2026 | A vulnerability was found in D-Link DWR-M960 1.01.07. This vulnerability affects the function sub_460F30 of the file /boafrm/formDateReboot of the component Scheduled Reboot Configuration Endpoint. The manipulation of the argument submit-url results in stack-based buffer overflow. The attack may be performed from… | |
| Analizada | Alta (7.4) | 1.2% | — | Dlink Dwr-m960 Firmware | 23/2/2026 | 17/6/2026 | A vulnerability has been found in D-Link DWR-M960 1.01.07. This affects the function sub_4196C4 of the file /boafrm/formVpnConfigSetup of the component VPN Configuration Endpoint. The manipulation of the argument submit-url leads to stack-based buffer overflow. The attack is possible to be carried out remotely. The… |