Vulnerabilidades em D-link
823 resultadosAnálise Vexday
D-Link apresenta footprint mínimo de vulnerabilidades na base com apenas 1 CVE registrado, publicado recentemente (últimos 90 dias), sem exploração ativa confirmada ou classificações críticas. A fraqueza identificada (CWE-266: Permissions, Privileges, and Access Controls) sugere falha em controle de acesso, mas o baixo volume e ausência de ataques ativos mantêm o risco em nível moderado no presente.
CVE-2025-8168HIGHD-Link DIR-513 formSetWanPPPoE websAspInit buffer overflowEPSS 1.6%CVE-2025-9938HIGHD-Link DI-8400 yyxz.asp yyxz_dlink_asp stack-based overflowEPSS 1.5%CVE-2022-26670HIGHD-Link DIR-878 - Command InjectionEPSS 1.5%CVE-2021-3707—D-Link router DSL-2750U with firmware vME1.16 or prior versions is vulnerable to unauthorized configuration modification. An unauthenticatedEPSS 1.5%CVE-2026-90705MEDIUMD-Link DWR-M921 Boa Dispatch Table formsysCmd os command injectionEPSS 1.5%CVE-2026-90706MEDIUMD-Link DWR-M921 formWsc os command injectionEPSS 1.5%CVE-2026-90704MEDIUMD-Link DWR-M921 formDiskPartition system command injectionEPSS 1.5%CVE-2025-8175HIGHD-Link DI-8400 jhttpd usb_paswd.asp null pointer dereferenceEPSS 1.5%CVE-2026-7853CRITICALD-Link DI-8100 HTTP auto_reboot.asp sprintf buffer overflowEPSS 1.5%CVE-2024-9549HIGHD-Link DIR-605L formEasySetupWizard formEasySetupWizard2 buffer overflowEPSS 1.5%CVE-2024-9550HIGHD-Link DIR-605L formLogDnsquery buffer overflowEPSS 1.5%CVE-2024-9534HIGHD-Link DIR-605L formEasySetPassword buffer overflowEPSS 1.5%CVE-2024-10916MEDIUMD-Link DNS-320/DNS-320LW/DNS-325/DNS-340L HTTP GET Request info.xml information disclosureEPSS 1.5%CVE-2024-9785HIGHD-Link DIR-619L B1 formSetDDNS buffer overflowEPSS 1.5%CVE-2025-7911HIGHD-Link DI-8100 jhttpd upnp_ctrl.asp sprintf stack-based overflowEPSS 1.5%CVE-2024-9532HIGHD-Link DIR-605L formAdvanceSetup buffer overflowEPSS 1.5%CVE-2023-44413MEDIUMD-Link D-View shutdown_coreserver Missing Authentication Denial-of-Service VulnerabilityEPSS 1.5%CVE-2021-34863HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2020 1.01rc001 routerEPSS 1.5%CVE-2023-35723HIGHD-Link DIR-X3260 prog.cgi SOAPAction Command Injection Remote Code Execution VulnerabilityEPSS 1.5%CVE-2021-34860MEDIUMThis vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DAP-2020 1.01rc00EPSS 1.5%