Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3007▼ 67 respecto a la semana anterior
Críticas / altas1403▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)390▼ 120 respecto a la semana anterior
25 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.5) | 0.46% | — | Dlink Dir-3040 Firmware | 23/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi websSecurityHandler Memory Leak Denial-of-Service Vulnerability. This vulnerability allows network-adjacent attackers to create a denial-of-service condition on affected installations of D-Link DIR-3040 routers. Authentication is not required to exploit this vulnerability. The specific flaw… | |
| Analizada | Alta (8.8) | 0.96% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 HTTP Request Processing Referer Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is not required to exploit this vulnerability. The… | |
| Analizada | Alta (8.8) | 1.0% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 HTTP Request Processing Referer Heap-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is not required to exploit this vulnerability. The specific… | |
| Analizada | Media (6.8) | 0.90% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetUsersSettings Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific flaw… | |
| Analizada | Media (6.8) | 0.90% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetTriggerPPPoEValidate Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific… | |
| Analizada | Media (6.8) | 0.90% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetMyDLinkRegistration Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific… | |
| Analizada | Media (6.8) | 0.90% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetIPv6PppoeSettings Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific flaw… | |
| Analizada | Media (6.8) | 0.87% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetDeviceSettings Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific flaw… | |
| Analizada | Media (6.8) | 0.87% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetQuickVPNSettings PSK Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific… | |
| Analizada | Media (6.8) | 0.87% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetWLanRadioSecurity Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific flaw… | |
| Analizada | Media (6.8) | 0.90% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetSysEmailSettings Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific flaw… | |
| Analizada | Media (6.8) | 0.90% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetWanSettings Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific flaw… | |
| Analizada | Media (6.8) | 0.87% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetWan3Settings Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific flaw… | |
| Analizada | Alta (7.1) | 0.75% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetQuickVPNSettings Password Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The… | |
| Analizada | Media (6.8) | 0.90% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetDynamicDNSSettings Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific… | |
| Analizada | Media (6.8) | 0.87% | — | Dlink Dir-3040 Firmware | 3/5/2024 | 17/6/2026 | D-Link DIR-3040 prog.cgi SetWan2Settings Stack-Based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 routers. Authentication is required to exploit this vulnerability. The specific flaw… | |
| Modificada | Alta (8.8) | 0.91% | — | Dlink Dir-3040 Firmware | 29/3/2023 | 17/6/2026 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-3040 1.20B03 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the MiniDLNA service. The issue results from the lack of proper validation of the… | |
| Modificada | Crítica (9.8) | 4.0% | — | Dlink Dir-3040 Firmware | 14/12/2022 | 17/6/2026 | D-Link DIR-3040 device with firmware 120B03 was discovered to contain a command injection vulnerability via the SetTriggerLEDBlink function. | |
| Modificada | Alta (7.8) | 2.2% | — | Dlink Dir-1360 FirmwareDlink Dir-1760 FirmwareDlink Dir-1960 FirmwareDlink Dir-2640 Firmware+6 | 11/4/2022 | 17/6/2026 | A command injection vulnerability in the protest binary allows an attacker with access to the remote command line interface to execute arbitrary commands as root. | |
| Modificada | Crítica (9.8) | 2.2% | — | Dlink Dir-3040 Firmware | 23/9/2021 | 17/6/2026 | An information disclosure vulnerability exists in the WiFi Smart Mesh functionality of D-LINK DIR-3040 1.13B03. A specially-crafted network request can lead to command execution. An attacker can connect to the MQTT service to trigger this vulnerability. | |
| Modificada | Crítica (9.8) | 3.0% | — | Dlink Dir-3040 Firmware | 16/7/2021 | 17/6/2026 | A hard-coded password vulnerability exists in the Libcli Test Environment functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to code execution. An attacker can send a sequence of requests to trigger this vulnerability. | |
| Modificada | Alta (7.2) | 2.9% | — | Dlink Dir-3040 Firmware | 16/7/2021 | 17/6/2026 | A code execution vulnerability exists in the Libcli Test Environment functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger this vulnerability. | |
| Modificada | Alta (7.5) | 1.7% | — | Dlink Dir-3040 Firmware | 16/7/2021 | 17/6/2026 | A hard-coded password vulnerability exists in the Zebra IP Routing Manager functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to a denial of service. An attacker can send a sequence of requests to trigger this vulnerability. | |
| Modificada | Alta (7.5) | 2.0% | — | Dlink Dir-3040 Firmware | 16/7/2021 | 17/6/2026 | An information disclosure vulnerability exists in the Zebra IP Routing Manager functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to the disclosure of sensitive information. An attacker can send a sequence of requests to trigger this vulnerability. | |
| Modificada | Media (4.3) | 32% | — | Dlink Dir-3040 Firmware | 16/7/2021 | 17/6/2026 | An information disclosure vulnerability exists in the Syslog functionality of D-LINK DIR-3040 1.13B03. A specially crafted network request can lead to the disclosure of sensitive information. An attacker can send an HTTP request to trigger this vulnerability. |