Dlink Dir-605L Firmware vulnerabilities
63 known vulnerabilities affecting dlink/dir-605l_firmware.
Total CVEs
63
CISA KEV
2
actively exploited
Public exploits
4
Exploited in wild
2
Severity breakdown
CRITICAL12HIGH43MEDIUM8
Vulnerabilities
Page 1 of 4
CVE-2014-8361P1CRITICALCVSS 9.8KEVPoC≤ 1.14b06≤ 2.07b02+1 more2015-05-01
CVE-2014-8361 [CRITICAL] CVE-2014-8361: The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a craf
The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request, as exploited in the wild through 2023.
nvd
CVE-2021-40655P1HIGHCVSS 7.5KEVPoCv2.01mt2021-09-24
CVE-2021-40655 [HIGH] CWE-863 CVE-2021-40655: An informtion disclosure issue exists in D-LINK-DIR-605 B2 Firmware Version : 2.01MT. An attacker ca
An informtion disclosure issue exists in D-LINK-DIR-605 B2 Firmware Version : 2.01MT. An attacker can obtain a user name and password by forging a post request to the / getcfg.php page
nvd
CVE-2012-10021P1CRITICALCVSS 9.8PoC≥ 1.12, ≤ 1.132025-07-31
CVE-2012-10021 [CRITICAL] CWE-121 CVE-2012-10021: A stack-based buffer overflow vulnerability exists in D-Link DIR-605L Wireless N300 Cloud Router fir
A stack-based buffer overflow vulnerability exists in D-Link DIR-605L Wireless N300 Cloud Router firmware versions 1.12 and 1.13 via the getAuthCode() function. The flaw arises from unsafe usage of sprintf() when processing user-supplied CAPTCHA data via the FILECODE parameter in /goform/formLogin. A remote unauthenticated attacker can exploit thi
nvd
CVE-2025-4443P2CRITICALCVSS 9.8v2.13b012025-05-09
CVE-2025-4443 [CRITICAL] CWE-74 CVE-2025-4443: A vulnerability was found in D-Link DIR-605L 2.13B01. It has been rated as critical. This issue affe
A vulnerability was found in D-Link DIR-605L 2.13B01. It has been rated as critical. This issue affects the function sub_454F2C. The manipulation of the argument sysCmd leads to command injection. The attack may be initiated remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no longer sup
nvd
CVE-2017-9675P2HIGHCVSS 7.5PoCv2.08b012017-06-15
CVE-2017-9675 [HIGH] CWE-20 CVE-2017-9675: On D-Link DIR-605L devices, firmware before 2.08UIBetaB01.bin allows an unauthenticated GET request
On D-Link DIR-605L devices, firmware before 2.08UIBetaB01.bin allows an unauthenticated GET request to trigger a reboot.
nvd
CVE-2025-4445P2CRITICALCVSS 9.8v2.13b012025-05-09
CVE-2025-4445 [CRITICAL] CWE-74 CVE-2025-4445: A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01. Affected is the fu
A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01. Affected is the function wake_on_lan. The manipulation of the argument mac leads to command injection. It is possible to launch the attack remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no longer support
nvd
CVE-2024-11959P2HIGHCVSS 8.8v2.13b012024-11-28
CVE-2024-11959 [HIGH] CWE-119 CVE-2024-11959: A vulnerability was found in D-Link DIR-605L 2.13B01. It has been classified as critical. This affec
A vulnerability was found in D-Link DIR-605L 2.13B01. It has been classified as critical. This affects the function formResetStatistic of the file /goform/formResetStatistic. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-5981P2HIGHCVSS 8.8v2.13b012026-04-09
CVE-2026-5981 [HIGH] CWE-119 CVE-2026-5981: A vulnerability has been found in D-Link DIR-605L 2.13B01. This affects the function formAdvFirewall
A vulnerability has been found in D-Link DIR-605L 2.13B01. This affects the function formAdvFirewall of the file /goform/formAdvFirewall of the component POST Request Handler. Such manipulation of the argument curTime leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. This vulnera
nvd
CVE-2026-5984P2HIGHCVSS 8.8v2.13b012026-04-09
CVE-2026-5984 [HIGH] CWE-119 CVE-2026-5984: A vulnerability was identified in D-Link DIR-605L 2.13B01. Impacted is the function formSetLog of th
A vulnerability was identified in D-Link DIR-605L 2.13B01. Impacted is the function formSetLog of the file /goform/formSetLog of the component POST Request Handler. The manipulation of the argument curTime leads to buffer overflow. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. This vulnerability
nvd
CVE-2026-5982P2HIGHCVSS 8.8v2.13b012026-04-09
CVE-2026-5982 [HIGH] CWE-119 CVE-2026-5982: A vulnerability was found in D-Link DIR-605L 2.13B01. This vulnerability affects the function formAd
A vulnerability was found in D-Link DIR-605L 2.13B01. This vulnerability affects the function formAdvNetwork of the file /goform/formAdvNetwork of the component POST Request Handler. Performing a manipulation of the argument curTime results in buffer overflow. Remote exploitation of the attack is possible. The exploit has been made public and could be u
nvd
CVE-2026-5979P2HIGHCVSS 8.8v2.13b012026-04-09
CVE-2026-5979 [HIGH] CWE-119 CVE-2026-5979: A vulnerability was detected in D-Link DIR-605L 2.13B01. Affected by this vulnerability is the funct
A vulnerability was detected in D-Link DIR-605L 2.13B01. Affected by this vulnerability is the function formVirtualServ of the file /goform/formVirtualServ of the component POST Request Handler. The manipulation of the argument curTime results in buffer overflow. The attack can be launched remotely. The exploit is now public and may be used. This vulner
nvd
CVE-2025-4441P2CRITICALCVSS 9.8v2.13b012025-05-08
CVE-2025-4441 [CRITICAL] CWE-119 CVE-2025-4441: A vulnerability was found in D-Link DIR-605L 2.13B01. It has been classified as critical. This affec
A vulnerability was found in D-Link DIR-605L 2.13B01. It has been classified as critical. This affects the function formSetWAN_Wizard534. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products tha
nvd
CVE-2024-11960P2HIGHCVSS 8.8v2.13b012024-11-28
CVE-2024-11960 [HIGH] CWE-119 CVE-2024-11960: A vulnerability was found in D-Link DIR-605L 2.13B01. It has been declared as critical. This vulnera
A vulnerability was found in D-Link DIR-605L 2.13B01. It has been declared as critical. This vulnerability affects the function formSetPortTr of the file /goform/formSetPortTr. The manipulation of the argument curTime leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9553P2HIGHCVSS 8.8v2.13b012024-10-06
CVE-2024-9553 [HIGH] CWE-120 CVE-2024-9553: A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01 BETA. This affects
A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01 BETA. This affects the function formdumpeasysetup of the file /goform/formdumpeasysetup. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9556P2HIGHCVSS 8.8v2.13b012024-10-06
CVE-2024-9556 [HIGH] CWE-120 CVE-2024-9556: A vulnerability, which was classified as critical, was found in D-Link DIR-605L 2.13B01 BETA. This a
A vulnerability, which was classified as critical, was found in D-Link DIR-605L 2.13B01 BETA. This affects the function formSetEnableWizard of the file /goform/formSetEnableWizard. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be use
nvd
CVE-2024-9561P2HIGHCVSS 8.8v2.13b012024-10-06
CVE-2024-9561 [HIGH] CWE-120 CVE-2024-9561: A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01 BETA. This affects
A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01 BETA. This affects the function formSetWAN_Wizard51/formSetWAN_Wizard52. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9515P2HIGHCVSS 8.8v2.13b012024-10-04
CVE-2024-9515 [HIGH] CWE-120 CVE-2024-9515: A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. It has been classified as critical. This
A vulnerability was found in D-Link DIR-605L 2.13B01 BETA. It has been classified as critical. This affects the function formSetQoS of the file /goform/formSetQoS. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-5983P2HIGHCVSS 8.8v2.13b012026-04-09
CVE-2026-5983 [HIGH] CWE-119 CVE-2026-5983: A vulnerability was determined in D-Link DIR-605L 2.13B01. This issue affects the function formSetDD
A vulnerability was determined in D-Link DIR-605L 2.13B01. This issue affects the function formSetDDNS of the file /goform/formSetDDNS of the component POST Request Handler. Executing a manipulation of the argument curTime can lead to buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized. This
nvd
CVE-2026-5980P2HIGHCVSS 8.8v2.13b012026-04-09
CVE-2026-5980 [HIGH] CWE-119 CVE-2026-5980: A flaw has been found in D-Link DIR-605L 2.13B01. Affected by this issue is the function formSetMACF
A flaw has been found in D-Link DIR-605L 2.13B01. Affected by this issue is the function formSetMACFilter of the file /goform/formSetMACFilter of the component POST Request Handler. This manipulation of the argument curTime causes buffer overflow. The attack may be initiated remotely. The exploit has been published and may be used. This vulnerability on
nvd
CVE-2024-9565P2HIGHCVSS 8.8v2.13b012024-10-07
CVE-2024-9565 [HIGH] CWE-120 CVE-2024-9565: A vulnerability has been found in D-Link DIR-605L 2.13B01 BETA and classified as critical. Affected
A vulnerability has been found in D-Link DIR-605L 2.13B01 BETA and classified as critical. Affected by this vulnerability is the function formSetPassword of the file /goform/formSetPassword. The manipulation of the argument curTime leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
nvd
1 / 4Next →