Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2856▼ 331 respecto a la semana anterior
Críticas / altas1383▼ 38 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)292▼ 217 respecto a la semana anterior
23 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.3) | 5.5% | — | Dlink Dar-7000 Firmware | 1/3/2025 | 17/6/2026 | A vulnerability has been found in D-Link DAR-7000 3.2 and classified as critical. This vulnerability affects the function get_ip_addr_details of the file /view/vpn/sxh_vpn/sxh_vpnlic.php of the component HTTP POST Request Handler. The manipulation of the argument ethname leads to command injection. The attack can be… | |
| Analizada | Media (5.3) | 17% | — | Dlink Dar-7000 Firmware | 19/9/2024 | 17/6/2026 | A vulnerability classified as critical has been found in D-Link DAR-7000 up to 20240912. Affected is an unknown function of the file /view/DBManage/Backup_Server_commit.php. The manipulation of the argument host leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed… | |
| Modificada | Media (5.1) | 3.1% | — | Dlink Dar-7000 Firmware | 5/7/2024 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 up to 20230922. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /log/decodmail.php. The manipulation of the argument file leads to deserialization. The attack may be launched remotely. The… | |
| Analizada | Media (5.3) | 2.9% | — | Dlink Dar-7000 Firmware | 16/5/2024 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000-40 V31R02B1413C and classified as critical. This issue affects some unknown processing of the file /useratte/resmanage.php. The manipulation of the argument load leads to os command injection. The attack may be initiated remotely. The exploit… | |
| Analizada | Media (5.3) | 2.5% | — | Dlink Dar-7000 Firmware | 16/5/2024 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DAR-7000-40 V31R02B1413C and classified as critical. This vulnerability affects unknown code of the file /firewall/urlblist.php. The manipulation of the argument file leads to unrestricted upload. The attack can be initiated remotely. The exploit… | |
| Analizada | Media (5.3) | 3.0% | — | Dlink Dar-7000 Firmware | 16/5/2024 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DAR-7000-40 V31R02B1413C. This affects an unknown part of the file /url/url.php. The manipulation of the argument file_upload leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit… | |
| Analizada | Media (5.3) | 2.5% | — | Dlink Dar-7000 Firmware | 16/5/2024 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in D-Link DAR-7000-40 V31R02B1413C. Affected by this issue is some unknown functionality of the file /useratte/resmanage.php. The manipulation of the argument file leads to unrestricted upload. The attack may be launched… | |
| Analizada | Media (5.3) | 2.3% | — | Dlink Dar-7000 Firmware | 16/5/2024 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical was found in D-Link DAR-7000-40 V31R02B1413C. Affected by this vulnerability is an unknown functionality of the file /user/onlineuser.php. The manipulation of the argument file_upload leads to unrestricted upload. The attack can be launched… | |
| Analizada | Media (5.3) | 2.3% | — | Dlink Dar-7000 Firmware | 16/5/2024 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical has been found in D-Link DAR-7000-40 V31R02B1413C. Affected is an unknown function of the file interface/sysmanage/licenseauthorization.php. The manipulation of the argument file_upload leads to unrestricted upload. It is possible to launch the… | |
| Modificada | Crítica (9.8) | 4.0% | — | Dlink Dar-7000 Firmware | 7/12/2023 | 17/6/2026 | A vulnerability has been found in D-Link DAR-7000 up to 20231126 and classified as critical. This vulnerability affects unknown code of the file /user/inc/workidajax.php. The manipulation of the argument id leads to sql injection. The exploit has been disclosed to the public and may be used. VDB-247162 is the… | |
| Modificada | Crítica (9.8) | 1.9% | — | Dlink Dar-7000 Firmware | 26/10/2023 | 17/6/2026 | SQL injection vulnerability in D-Link Online behavior audit gateway DAR-7000 V31R02B1413C allows a remote attacker to obtain sensitive information and execute arbitrary code via the editrole.php component. | |
| Modificada | Crítica (9.8) | 0.69% | — | Dlink Dar-7000 Firmware | 17/10/2023 | 17/6/2026 | D-Link Online behavior audit gateway DAR-7000 V31R02B1413C is vulnerable to SQL Injection via /log/mailrecvview.php. | |
| Modificada | Crítica (9.8) | 13% | — | Dlink Dar-7000 Firmware | 17/10/2023 | 17/6/2026 | D-Link Online behavior audit gateway DAR-7000 V31R02B1413C is vulnerable to SQL Injection via /importexport.php. | |
| Modificada | Alta (8.8) | 17% | — | Dlink Dar-7000 Firmware | 1/10/2023 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 up to 20151231. It has been rated as critical. Affected by this issue is some unknown functionality of the file /sysmanage/edit_manageadmin.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely.… | |
| Modificada | Media (6.5) | 1.7% | — | Dlink Dar-7000 Firmware | 25/9/2023 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DAR-8000 up to 20151231. This affects an unknown part of the file /Tool/querysql.php. The manipulation leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the… | |
| Modificada | Alta (8.8) | 23% | — | Dlink Dar-7000 FirmwareDlink Dar-8000 Firmware | 25/9/2023 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical has been found in D-Link DAR-7000 and DAR-8000 up to 20151231. Affected is an unknown function of the file /useratte/web.php. The manipulation of the argument file_upload leads to unrestricted upload. It is possible to launch the attack remotely.… | |
| Modificada | Alta (8.8) | 21% | — | Dlink Dar-7000 Firmware | 25/9/2023 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 up to 20151231. It has been rated as critical. This issue affects some unknown processing of the file /useratte/userattestation.php. The manipulation of the argument web_img leads to unrestricted upload. The attack may be initiated remotely.… | |
| Modificada | Alta (8.8) | 31% | — | Dlink Dar-7000 FirmwareDlink Dar-8000 Firmware | 25/9/2023 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 and DAR-8000 up to 20151231. It has been declared as critical. This vulnerability affects unknown code of the file /Tool/uploadfile.php. The manipulation of the argument file_upload leads to unrestricted upload. The attack can be initiated… | |
| Modificada | Alta (8.8) | 26% | — | Dlink Dar-7000 Firmware | 25/9/2023 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 up to 20151231. It has been classified as critical. This affects an unknown part of the file /sysmanage/updateos.php. The manipulation of the argument 1_file_upload leads to unrestricted upload. It is possible to initiate the attack remotely.… | |
| Modificada | Alta (8.8) | 32% | — | Dlink Dar-7000 FirmwareDlink Dar-8000 Firmware | 25/9/2023 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DAR-7000 and DAR-8000 up to 20151231 and classified as critical. Affected by this issue is some unknown functionality of the file /sysmanage/updatelib.php. The manipulation of the argument file_upload leads to unrestricted upload. The attack may be… | |
| Modificada | Alta (8.8) | 34% | — | Dlink Dar-7000 FirmwareDlink Dar-8000 Firmware | 25/9/2023 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DAR-7000 up to 20151231 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /sysmanage/licence.php. The manipulation of the argument file_upload leads to unrestricted upload. The attack can be… | |
| Modificada | Alta (8.8) | 6.0% | — | Dlink Dar-7000 FirmwareDlink Dar-8000 Firmware | 24/9/2023 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DAR-7000 and DAR-8000 up to 20151231. Affected is an unknown function of the file /sysmanage/updateos.php. The manipulation of the argument file_upload leads to unrestricted upload. It is possible to launch the… | |
| Modificada | Crítica (9.8) | 3.6% | — | Dlink Dar-7000 Firmware | 24/9/2023 | 17/6/2026 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in D-Link DAR-7000 up to 20151231. This issue affects some unknown processing of the file /log/webmailattach.php. The manipulation of the argument table_name leads to an unknown weakness. The attack may be initiated… |