Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3026▼ 51 respecto a la semana anterior
Críticas / altas1412▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)385▼ 125 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.3) | 0.39% | — | Dlink Dir-823 PRO Firmware | 27/6/2025 | 1/7/2026 | D-Link DIR-823-Pro 1.02 has improper permission control, allowing unauthorized users to turn on and access Telnet services. | |
| Modificada | Crítica (9.8) | 28% | — | Dlink Dir-823 PRO Firmware | 2/5/2022 | 17/6/2026 | D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetNTPserverSeting. This vulnerability allows attackers to execute arbitrary commands via the system_time_timezone parameter. | |
| Modificada | Crítica (9.8) | 3.7% | — | Dlink Dir-823 PRO Firmware | 4/2/2022 | 17/6/2026 | D-Link device D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function ChgSambaUserSettings. This vulnerability allows attackers to execute arbitrary commands via the samba_name parameter. | |
| Modificada | Crítica (9.8) | 3.7% | — | Dlink Dir-823 PRO Firmware | 4/2/2022 | 17/6/2026 | D-Link device D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetWLanACLSettings. This vulnerability allows attackers to execute arbitrary commands via the wl(0).(0)_maclist parameter. | |
| Modificada | Crítica (9.8) | 3.7% | — | Dlink Dir-823 PRO Firmware | 4/2/2022 | 17/6/2026 | D-Link device D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetStationSettings. This vulnerability allows attackers to execute arbitrary commands via the station_access_enable parameter. | |
| Modificada | Crítica (9.8) | 4.4% | — | Dlink Dir-823 PRO Firmware | 4/2/2022 | 17/6/2026 | D-Link device D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetWLanApcliSettings. This vulnerability allows attackers to execute arbitrary commands via the ApCliKeyStr parameter. | |
| Modificada | Crítica (9.8) | 3.7% | — | Dlink Dir-823 PRO Firmware | 4/2/2022 | 17/6/2026 | D-Link device D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetStaticRouteSettings. This vulnerability allows attackers to execute arbitrary commands via the staticroute_list parameter. | |
| Modificada | Crítica (9.8) | 3.7% | — | Dlink Dir-823 PRO Firmware | 4/2/2022 | 17/6/2026 | D-Link device D-Link DIR-823-Pro v1.0.2 was discovered to contain a command injection vulnerability in the function SetNetworkTomographySettings. This vulnerability allows attackers to execute arbitrary commands via the tomography_ping_address, tomography_ping_number, tomography_ping_size, tomography_ping_timeout, and… |