Dlink
Dlink Di-8100 Firmware: vulnerabilidades y CVE
Dlink Di-8100 Firmware tiene 27 vulnerabilidades publicadas, 9 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE27
Últimos 12 meses9
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-7857 | Alta (7.3) | 1.2% | — | 5 may 2026 | A vulnerability has been found in D-Link DI-8100 16.07.26A1. This vulnerability affects the function sprintf of the file /user_group.asp of the component CGI Handler. The manipulation leads to buffer overflow. The… |
| CVE-2026-7856 | Alta (7.3) | 1.2% | — | 5 may 2026 | A flaw has been found in D-Link DI-8100 16.07.26A1. This affects an unknown part of the file /url_member.asp of the component Web Management Interface. Executing a manipulation of the argument Name can lead to buffer… |
| CVE-2026-7855 | Alta (7.4) | 1.2% | — | 5 may 2026 | A vulnerability was detected in D-Link DI-8100 16.07.26A1. Affected by this issue is the function tggl_asp of the file /tggl.asp of the component HTTP Request Handler. Performing a manipulation of the argument Name… |
| CVE-2026-7854 | Alta (8.9) | 1.9% | — | 5 may 2026 | A security vulnerability has been detected in D-Link DI-8100 16.07.26A1. Affected by this vulnerability is the function url_rule_asp of the file /url_rule.asp of the component POST Parameter Handler. Such manipulation… |
| CVE-2026-7853 | Alta (8.9) | 1.9% | — | 5 may 2026 | A weakness has been identified in D-Link DI-8100 16.07.26A1. Affected is the function sprintf of the file /auto_reboot.asp of the component HTTP Handler. This manipulation of the argument enable/time causes buffer… |
| CVE-2026-7851 | Alta (7.3) | 1.2% | — | 5 may 2026 | A vulnerability was identified in D-Link DI-8100 16.07.26A1. This affects the function sprintf of the file yyxz.asp. The manipulation of the argument ID leads to stack-based buffer overflow. The attack is possible to be… |
| CVE-2026-7248 | Alta (8.9) | 3.8% | — | 28 abr 2026 | A vulnerability was found in D-Link DI-8100 16.07.26A1. This affects the function tgfile_htm of the file tgfile.htm of the component CGI Endpoint. The manipulation of the argument fn results in buffer overflow. The… |
| CVE-2026-7247 | Alta (7.3) | 1.2% | — | 28 abr 2026 | A vulnerability has been found in D-Link DI-8100 16.07.26A1. Affected by this issue is the function file_exten_asp of the file file_exten.asp of the component File Extension Handler. The manipulation of the argument… |
| CVE-2025-52222 | Alta (7.5) | 0.33% | — | 8 abr 2026 | D-Link DI-8003 v16.07.26A1, DI-8500 v16.07.26A1; DI-8003G v17.12.21A1, DI-8200G v17.12.20A1, DI-8200 v16.07.26A1, DI-8400 v16.07.26A1, DI-8004w v16.07.26A1, DI-8100 v16.07.26A1, and DI-8100G v17.12.20A1 were discovered… |
| CVE-2025-51281 | Alta (7) | 0.45% | — | 25 ago 2025 | D-Link DI-8100 16.07.26A1 is vulnerable to Buffer Overflow via the en`, `val and id parameters in the qj_asp function. This vulnerability allows authenticated attackers to cause a Denial of Service (DoS) by sending… |
| CVE-2025-7911 | Alta (7.4) | 1.5% | — | 20 jul 2025 | A vulnerability classified as critical was found in D-Link DI-8100 1.0. This vulnerability affects the function sprintf of the file /upnp_ctrl.asp of the component jhttpd. The manipulation of the argument… |
| CVE-2025-7908 | Alta (7.4) | 1.3% | — | 20 jul 2025 | A vulnerability was found in D-Link DI-8100 1.0. It has been declared as critical. Affected by this vulnerability is the function sprintf of the file /ddns.asp?opt=add of the component jhttpd. The manipulation of the… |
| CVE-2025-7790 | Alta (7.4) | 0.86% | — | 18 jul 2025 | A vulnerability was found in D-Link DI-8100 16.07.26A1. It has been classified as critical. This affects an unknown part of the file /menu_nat.asp of the component HTTP Request Handler. The manipulation of the argument… |
| CVE-2025-7762 | Alta (7.4) | 4.4% | — | 17 jul 2025 | A vulnerability, which was classified as critical, has been found in D-Link DI-8100 16.07.26A1. This issue affects some unknown processing of the file /menu_nat_more.asp of the component HTTP Request Handler. The… |
| CVE-2025-7603 | Alta (7.3) | 1.2% | — | 14 jul 2025 | A vulnerability was found in D-Link DI-8100 16.07.26A1. It has been classified as critical. Affected is an unknown function of the file /jingx.asp of the component HTTP Request Handler. The manipulation leads to… |
| CVE-2025-7602 | Alta (7.3) | 1.2% | — | 14 jul 2025 | A vulnerability was found in D-Link DI-8100 16.07.26A1 and classified as critical. This issue affects some unknown processing of the file /arp_sys.asp of the component HTTP Request Handler. The manipulation leads to… |
| CVE-2025-6881 | Alta (7.4) | 0.98% | — | 30 jun 2025 | A vulnerability was found in D-Link DI-8100 16.07.21. It has been rated as critical. Affected by this issue is some unknown functionality of the file /pppoe_base.asp of the component jhttpd. The manipulation of the… |
| CVE-2025-5228 | Alta (8.7) | 2.9% | — | 27 may 2025 | A vulnerability was found in D-Link DI-8100 up to 20250523. It has been classified as critical. Affected is the function httpd_get_parm of the file /login.cgi of the component jhttpd. The manipulation of the argument… |
| CVE-2025-44083 | Crítica (9.8) | 0.82% | — | 21 may 2025 | An issue in D-Link DI-8100 16.07.26A1 allows a remote attacker to bypass administrator login authentication |
| CVE-2025-4544 | Alta (7.5) | 11% | — | 11 may 2025 | A vulnerability was found in D-Link DI-8100 up to 16.07.26A1 and classified as critical. This issue affects some unknown processing of the file /ddos.asp of the component jhttpd. The manipulation of the argument… |
| CVE-2025-3538 | Alta (8.7) | 13% | — | 13 abr 2025 | A vulnerability was found in D-Link DI-8100 16.07.26A1. It has been rated as critical. This issue affects the function auth_asp of the file /auth.asp of the component jhttpd. The manipulation of the argument callback… |
| CVE-2025-28398 | Alta (7.1) | 0.64% | — | 1 abr 2025 | D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_net_asp function via the remot_ip parameter. |
| CVE-2025-28395 | Alta (7.1) | 0.64% | — | 1 abr 2025 | D-LINK DI-8100 16.07.26A1 is vulnerable to Buffer Overflow in the ipsec_road_asp function via the host_ip parameter. |
| CVE-2024-52711 | Media (5.7) | 0.63% | — | 19 nov 2024 | DI-8100 v16.07.26A1 is vulnerable to Buffer Overflow In the ip_position_asp function via the ip parameter. |
| CVE-2024-44375 | Alta (7.5) | 0.69% | — | 9 sept 2024 | D-Link DI-8100 v16.07.26A1 has a stack overflow vulnerability in the dbsrv_asp function. |
| CVE-2024-7833 | Media (5.3) | 4.7% | — | 15 ago 2024 | A vulnerability was found in D-Link DI-8100 16.07. It has been classified as critical. This affects the function upgrade_filter_asp of the file upgrade_filter.asp. The manipulation of the argument path leads to command… |
| CVE-2024-7436 | Media (5.3) | 7.8% | — | 3 ago 2024 | A vulnerability, which was classified as critical, has been found in D-Link DI-8100 16.07. This issue affects the function msp_info_htm of the file msp_info.htm. The manipulation of the argument cmd leads to command… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.