Vulnerabilidades em D-Link

778 resultados
Análise Vexday

Com 777 CVEs catalogadas e 57 surgidas nos últimos 90 dias, o portfólio de vulnerabilidades da D-Link apresenta um ritmo de descoberta que exige monitoramento contínuo. A taxa de exploração ativa está em linha com a média geral do catálogo, mas o destaque crítico é CVE-2024-3273, que possui EPSS máximo de 1.0 — indicando probabilidade extremamente alta de exploração ativa —, e deve ser tratada como prioridade absoluta de mitigação. A presença de 80 CVEs com PoC pública, combinada com 56 falhas de severidade crítica, amplia significativamente a superfície de ataque disponível para agentes mal-intencionados. O tipo de falha mais frequente, CWE-121 (stack-based buffer overflow), é historicamente associado à execução remota de código, o que reforça a urgência de aplicar correções e segmentar dispositivos D-Link expostos à rede.

CVE-2022-43625MEDIUMThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. AlEPSS 1.1%CVE-2024-9782HIGHD-Link DIR-619L B1 formEasySetupWWConfig buffer overflowEPSS 1.1%CVE-2024-13107MEDIUMD-Link DIR-816 A2 ACL form2LocalAclEditcfg.cgi access controlEPSS 1.1%CVE-2026-7855HIGHD-Link DI-8100 HTTP Request tggl.asp tggl_asp buffer overflowEPSS 1.1%CVE-2022-43620HIGHThis vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-1935 1.03 routers. AutEPSS 1.1%CVE-2026-11341MEDIUMD-Link DWR-M920 formIMEISetup sub_412DA0 os command injectionEPSS 1.0%CVE-2025-15194CRITICALD-Link DIR-600 HTTP Header hedwig.cgi stack-based overflowEPSS 1.0%CVE-2023-32139HIGHD-Link DAP-1360 webproc Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-32144HIGHD-Link DAP-1360 webproc COMM_MakeCustomMsg Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 1.0%CVE-2025-4904MEDIUMD-Link DI-7003GV2 webgl.data sub_41F0FC information disclosureEPSS 1.0%CVE-2023-44416MEDIUMD-Link DAP-2622 Telnet CLI Command Injection Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-45697CRITICALD-Link WiFi router - Hidden FunctionalityEPSS 1.0%CVE-2023-51631MEDIUMD-Link DIR-X3260 prog.cgi SetUsersSettings Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 1.0%CVE-2025-4841HIGHD-Link DCS-932L gpio sub_404780 stack-based overflowEPSS 1.0%CVE-2025-4843HIGHD-Link DCS-932L udev SubUPnPCSInit stack-based overflowEPSS 1.0%CVE-2025-4842HIGHD-Link DCS-932L ucp isUCPCameraNameChanged stack-based overflowEPSS 1.0%CVE-2022-43619MEDIUMThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. AlEPSS 1.0%CVE-2022-43630HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. AuEPSS 1.0%CVE-2022-43622HIGHThis vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers. AuEPSS 1.0%CVE-2026-8260HIGHD-Link DCS-935L HNAP Service hnap_service SetDeviceSettings buffer overflowEPSS 1.0%