Dlink
Dlink Di-8003 Firmware: vulnerabilidades y CVE
Dlink Di-8003 Firmware tiene 35 vulnerabilidades publicadas, 28 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE35
Últimos 12 meses28
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-50673 | Alta (7.5) | 0.41% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the http_lanport parameter in the /webgl.asp endpoint. |
| CVE-2025-50672 | Alta (7.5) | 0.41% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of parameters in the /yyxz_dlink.asp endpoint. |
| CVE-2025-50671 | Alta (7.5) | 0.49% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of parameters in the /xwgl_ref.asp endpoint. An attacker can exploit this vulnerability by sending a crafted HTTP GET request… |
| CVE-2025-50670 | Alta (7.5) | 0.49% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of parameters in the /xwgl_bwr.asp endpoint. An attacker can exploit this vulnerability by sending a crafted HTTP GET request… |
| CVE-2025-50669 | Alta (7.5) | 0.41% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 and DI-8003G 19.12.10A1 due to improper handling of the wan_ping parameter in the /wan_ping.asp endpoint. |
| CVE-2025-50668 | Alta (7.5) | 0.41% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the s parameter in the /web_list_opt.asp endpoint. |
| CVE-2025-50667 | Alta (7.5) | 0.41% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the iface parameter in the /wan_line_detection.asp endpoint. |
| CVE-2025-50666 | Alta (7.5) | 0.60% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of multiple parameters in the /web_post.asp endpoint. An attacker can exploit this vulnerability by sending a crafted HTTP GET… |
| CVE-2025-50665 | Alta (7.5) | 0.60% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of input parameters in the /web_keyword.asp endpoint. An attacker can exploit this vulnerability by sending a crafted HTTP GET… |
| CVE-2025-50664 | Alta (7.5) | 0.60% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of parameters in the /user_group.asp endpoint. The attacker can exploit this vulnerability by sending a crafted HTTP GET… |
| CVE-2025-50663 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the name parameter in the /usb_paswd.asp endpoint. |
| CVE-2025-50662 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the name parameter in the /url_group.asp endpoint. |
| CVE-2025-50661 | Alta (7.5) | 0.60% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of multiple parameters in the /url_rule.asp endpoint. An attacker can exploit this vulnerability by sending a crafted HTTP GET… |
| CVE-2025-50660 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the name parameter in the /url_member.asp endpoint. |
| CVE-2025-50659 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the custom_error parameter in the /user.asp endpoint. |
| CVE-2025-50657 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the pid parameter in the /trace.asp endpoint. |
| CVE-2025-50655 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the name parameter in the /thd_group.asp endpoint. |
| CVE-2025-50654 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper validation of the id parameter in the /thd_member.asp endpoint. |
| CVE-2025-50653 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper handling of the name and mem parameters in the /time_group.asp endpoint. |
| CVE-2025-50652 | Alta (7.5) | 0.47% | — | 8 abr 2026 | An issue in D-Link DI-8003 16.07.26A1 related to improper handling of the id parameter in the /saveparm_usb.asp endpoint. |
| CVE-2025-50650 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to inadequate validation of input size in the routes_static parameter in the /router.asp endpoint. |
| CVE-2025-50649 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper input validation in the vlan_name parameter in the /shut_set.asp endpoint. |
| CVE-2025-50648 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to inadequate input validation in the /tggl.asp endpoint. |
| CVE-2025-50647 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1, specifically in the handling of the wans parameter in the qos.asp endpoint. |
| CVE-2025-50646 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to insufficient input validation on the name parameter in the /qos_type_asp.asp endpoint. |
| CVE-2025-50645 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A vulnerability has been discovered in D-Link DI-8003 16.07.26A1, which can lead to a buffer overflow when the s parameter in the pppoe_list_opt.asp endpoint is manipulated. By sending a crafted request with an… |
| CVE-2025-50644 | Alta (7.5) | 0.52% | — | 8 abr 2026 | A buffer overflow vulnerability exists in D-Link DI-8003 16.07.26A1 due to improper validation of user input in the qj.asp endpoint. |
| CVE-2025-52222 | Alta (7.5) | 0.33% | — | 8 abr 2026 | D-Link DI-8003 v16.07.26A1, DI-8500 v16.07.26A1; DI-8003G v17.12.21A1, DI-8200G v17.12.20A1, DI-8200 v16.07.26A1, DI-8400 v16.07.26A1, DI-8004w v16.07.26A1, DI-8100 v16.07.26A1, and DI-8100G v17.12.20A1 were discovered… |
| CVE-2024-52755 | Media (4.9) | 0.81% | — | 21 nov 2024 | D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the host_ip parameter in the ipsec_road_asp function. |
| CVE-2024-52757 | Media (4.9) | 0.64% | — | 20 nov 2024 | D-LINK DI-8003 v16.07.16A1 was discovered to contain a buffer overflow via the notify parameter in the arp_sys_asp function. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.