Vulnerabilities in D-link

822 results
Vexday analysis

D-Link apresenta footprint mínimo de vulnerabilidades na base com apenas 1 CVE registrado, publicado recentemente (últimos 90 dias), sem exploração ativa confirmada ou classificações críticas. A fraqueza identificada (CWE-266: Permissions, Privileges, and Access Controls) sugere falha em controle de acesso, mas o baixo volume e ausência de ataques ativos mantêm o risco em nível moderado no presente.

CVE-2025-4449HIGHD-Link DIR-619L formEasySetupWizard3 buffer overflowEPSS 2.9%CVE-2025-4448HIGHD-Link DIR-619L formEasySetupWizard buffer overflowEPSS 2.9%CVE-2025-4452HIGHD-Link DIR-619L formSetWizard2 buffer overflowEPSS 2.9%CVE-2025-4450HIGHD-Link DIR-619L formSetEasy_Wizard buffer overflowEPSS 2.9%CVE-2025-5228HIGHD-Link DI-8100 jhttpd login.cgi httpd_get_parm stack-based overflowEPSS 2.9%CVE-2024-4965MEDIUMD-Link DAR-7000-40 resmanage.php os command injectionEPSS 2.9%CVE-2026-90703CRITICALD-Link DWR-M921 formDiskCreateShare system os command injectionEPSS 2.8%CVE-2026-90702CRITICALD-Link DWR-M921 formDiskFormat system os command injectionEPSS 2.8%CVE-2026-82688CRITICALD-Link DNS-340L/DNS-345 Virtual Volume virtual_vol.cgi os command injectionEPSS 2.8%CVE-2025-6121CRITICALD-Link DIR-632 HTTP POST Request get_pure_content stack-based overflowEPSS 2.8%CVE-2020-15633HIGHThis vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-EPSS 2.8%CVE-2024-1786HIGHD-Link DIR-600M C1 Telnet Service buffer overflowEPSS 2.7%CVE-2026-1625MEDIUMD-Link DWR-M961 SMS Message formSmsManage sub_4250E0 command injectionEPSS 2.7%CVE-2026-1624MEDIUMD-Link DWR-M961 formLtefotaUpgradeFibocom command injectionEPSS 2.7%CVE-2026-7067MEDIUMD-Link DIR-822 udhcpd DHCP Service dhcpd.c system command injectionEPSS 2.7%CVE-2020-27865HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1860 firmware versionEPSS 2.6%CVE-2025-6897MEDIUMD-Link DI-7300G+ httpd_debug.asp os command injectionEPSS 2.6%CVE-2021-27248HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2020 v1.01rc001 Wi-FiEPSS 2.6%CVE-2024-9908MEDIUMD-Link DIR-619L B1 formSetMACFilter buffer overflowEPSS 2.6%CVE-2025-5630CRITICALD-Link DIR-816 form2lansetup.cgi stack-based overflowEPSS 2.6%