Vulnerabilidades en D-LINK

823 resultados
Análisis Vexday

D-Link apresenta uma vulnerabilidade crítica em sua base (CVSS crítico), ligada a injeção de comando (CWE-78), publicada recentemente nos últimos 90 dias. Apesar do volume reduzido, a severidade da falha e sua recência exigem atenção imediata, embora nenhum ataque ativo tenha sido documentado até o momento.

CVE-2025-4348HIGHD-Link DIR-600L formSetWanL2TP buffer overflowEPSS 2.2%CVE-2024-9909HIGHD-Link DIR-619L B1 formSetMuti buffer overflowEPSS 2.2%CVE-2026-93958CRITICALD-Link R95 DHMAPI ssi system os command injectionEPSS 2.2%CVE-2022-43621HIGHThis vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-1935 1.03 routers. AutEPSS 2.2%CVE-2026-7248CRITICALD-Link DI-8100 CGI Endpoint tgfile.htm tgfile_htm buffer overflowEPSS 2.2%CVE-2026-85224CRITICALD-Link DNS-320 ShareCenter File Sharing file_sharing.cgi os command injectionEPSS 2.2%CVE-2025-4347HIGHD-Link DIR-600L formWlSiteSurvey buffer overflowEPSS 2.2%CVE-2024-7832HIGHD-Link DNS-1550-04 photocenter_mgr.cgi cgi_get_fullscreen_photos buffer overflowEPSS 2.1%CVE-2026-85222CRITICALD-Link DNS-340L Add-On Center addon_center.cgi os command injectionEPSS 2.1%CVE-2026-82691CRITICALD-Link DNS-320L/DNS-327L/DNS-340L/DNS-345 CGI usb_device.cgi os command injectionEPSS 2.1%CVE-2026-82690CRITICALD-Link DNS-327L/DNS-340L ve_mgr.cgi os command injectionEPSS 2.1%CVE-2024-8460MEDIUMD-Link DNS-320 Web Management Interface widget_api.cgi information disclosureEPSS 2.1%CVE-2025-2621CRITICALD-Link DAP-1620 storage check_dws_cookie stack-based overflowEPSS 2.1%CVE-2025-6931MEDIUMD-Link DCS-6517/DCS-7517 Root Password Generation httpd generate_pass_from_mac entropyEPSS 2.1%CVE-2026-4627HIGHD-Link DIR-825/DIR-825R NTP Service libdeuteron_modules.so handler_update_system_time os command injectionEPSS 2.0%CVE-2025-2619CRITICALD-Link DAP-1620 Cookie storage check_dws_cookie stack-based overflowEPSS 2.0%CVE-2025-2618CRITICALD-Link DAP-1620 Path api set_ws_action heap-based overflowEPSS 2.0%CVE-2022-36785HIGHD-Link – G integrated Access Device4 Information Disclosure & Authorization Bypass.EPSS 2.0%CVE-2024-9565HIGHD-Link DIR-605L formSetPassword buffer overflowEPSS 2.0%CVE-2022-3210HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary commands on affected installations of D-Link DIR-2150 4.0.1 routerEPSS 2.0%