Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
–

7 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.4)0.95%—Dlink Dir-867 Firmware20/6/202517/6/2026
A vulnerability has been found in D-Link DIR-867 1.0 and classified as critical. This vulnerability affects the function strncpy of the component Query String Handler. The manipulation leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be…
ModificadaCrítica (9.8)2.5%—Dlink Dir-867 Firmware13/3/202317/6/2026
OS Command injection vulnerability in D-Link DIR-867 DIR_867_FW1.30B07 allows attackers to execute arbitrary commands via a crafted LocalIPAddress parameter for the SetVirtualServerSettings to HNAP1.
ModificadaAlta (8.8)1.1%—Dlink Dir-882-us FirmwareDlink Dir-867 FirmwareDlink Dir-878 Firmware26/1/202317/6/2026
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of multiple D-Link routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the lighttpd service, which listens on TCP port 80 by default. The issue results from the…
ModificadaAlta (7.8)2.2%—Dlink Dir-1360 FirmwareDlink Dir-1760 FirmwareDlink Dir-1960 FirmwareDlink Dir-2640 Firmware+611/4/202217/6/2026
A command injection vulnerability in the protest binary allows an attacker with access to the remote command line interface to execute arbitrary commands as root.
ModificadaAlta (8.8)2.8%—D-link Dir-867 FirmwareD-link Dir-878 FirmwareD-link Dir-882 Firmware23/7/202017/6/2026
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.20B10_BETA. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of HNAP requests. The issue…
ModificadaAlta (8.8)80%—Dlink Dir-878 FirmwareDlink Dir-882 FirmwareDlink Dir-867 Firmware23/3/202017/6/2026
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.10B04. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of HNAP login requests. The issue…
ModificadaAlta (8.8)77%—Dlink Dir-878 FirmwareDlink Dir-882 FirmwareDlink Dir-867 Firmware23/3/202017/6/2026
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.10B04. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of HNAP login requests. The issue…