cbcvebase.

Dlink Dir-605L Firmware vulnerabilities

63 known vulnerabilities affecting dlink/dir-605l_firmware.

Total CVEs
63
CISA KEV
2
actively exploited
Public exploits
4
Exploited in wild
2
Severity breakdown
CRITICAL12HIGH43MEDIUM8

Vulnerabilities

Page 3 of 4
CVE-2023-24350P3CRITICALCVSS 9.8v2.13b012023-02-10
CVE-2023-24350 [CRITICAL] CWE-787 CVE-2023-24350: D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the config D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the config.smtp_email_subject parameter at /goform/formSetEmail.
nvd
CVE-2023-24348P3CRITICALCVSS 9.8v2.13b012023-02-10
CVE-2023-24348 [CRITICAL] CWE-787 CVE-2023-24348: D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTim D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSetACLFilter.
nvd
CVE-2023-24344P3HIGHCVSS 8.8v2.13b012023-02-10
CVE-2023-24344 [HIGH] CWE-787 CVE-2023-24344: D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpag D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /goform/formWlanGuestSetup.
nvd
CVE-2023-24343P3HIGHCVSS 8.8v2.13b012023-02-10
CVE-2023-24343 [HIGH] CWE-787 CVE-2023-24343: D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTim D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSchedule.
nvd
CVE-2023-24347P3HIGHCVSS 8.8v2.13b012023-02-10
CVE-2023-24347 [HIGH] CWE-787 CVE-2023-24347: D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpag D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /goform/formSetWanDhcpplus.
nvd
CVE-2023-24346P3HIGHCVSS 8.8v2.13b012023-02-10
CVE-2023-24346 [HIGH] CWE-787 CVE-2023-24346: D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the wan_co D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the wan_connected parameter at /goform/formEasySetupWizard3.
nvd
CVE-2023-24345P3HIGHCVSS 8.8v2.13b012023-02-10
CVE-2023-24345 [HIGH] CWE-787 CVE-2023-24345: D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTim D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSetWanDhcpplus.
nvd
CVE-2020-19318P3HIGHCVSS 8.8≤ 1.17b012023-09-11
CVE-2020-19318 [HIGH] CWE-787 CVE-2020-19318: Buffer Overflow vulnerability in D-Link DIR-605L, hardware version AX, firmware version 1.17beta and Buffer Overflow vulnerability in D-Link DIR-605L, hardware version AX, firmware version 1.17beta and below, allows authorized attackers execute arbitrary code via sending crafted data to the webserver service program.
nvd
CVE-2025-2549P3HIGHCVSS 8.8v3.022025-03-20
CVE-2025-2549 [HIGH] CWE-266 CVE-2025-2549: A vulnerability has been found in D-Link DIR-618 and DIR-605L 2.02/3.02 and classified as problemati A vulnerability has been found in D-Link DIR-618 and DIR-605L 2.02/3.02 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /goform/formSetPassword. The manipulation leads to improper access controls. The attack needs to be done within the local network. The exploit has been disclosed to the public and m
nvd
CVE-2025-2548P3HIGHCVSS 8.8v3.022025-03-20
CVE-2025-2548 [HIGH] CWE-266 CVE-2025-2548: A vulnerability, which was classified as problematic, was found in D-Link DIR-618 and DIR-605L 2.02/ A vulnerability, which was classified as problematic, was found in D-Link DIR-618 and DIR-605L 2.02/3.02. Affected is an unknown function of the file /goform/formSetDomainFilter. The manipulation leads to improper access controls. The attack can only be initiated within the local network. The exploit has been disclosed to the public and may be used. Thi
nvd
CVE-2026-2055P3HIGHCVSS 7.5v2.06b012026-02-06
CVE-2026-2055 [HIGH] CWE-200 CVE-2026-2055: A weakness has been identified in D-Link DIR-605L and DIR-619L 2.06B01/2.13B01. The affected element A weakness has been identified in D-Link DIR-605L and DIR-619L 2.06B01/2.13B01. The affected element is an unknown function of the component DHCP Client Information Handler. Executing a manipulation can lead to information disclosure. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks. Th
nvd
CVE-2026-2054P3HIGHCVSS 7.5v2.06b012026-02-06
CVE-2026-2054 [HIGH] CWE-200 CVE-2026-2054: A security flaw has been discovered in D-Link DIR-605L and DIR-619L 2.06B01/2.13B01. Impacted is an A security flaw has been discovered in D-Link DIR-605L and DIR-619L 2.06B01/2.13B01. Impacted is an unknown function of the component Wifi Setting Handler. Performing a manipulation results in information disclosure. The attack may be initiated remotely. The exploit has been released to the public and may be used for attacks. This vulnerability only affe
nvd
CVE-2023-29961P3CRITICALCVSS 9.8v1.17b012023-05-16
CVE-2023-29961 [CRITICAL] CWE-787 CVE-2023-29961: D-Link DIR-605L firmware version 1.17B01 BETA is vulnerable to stack overflow via /goform/formTcpipS D-Link DIR-605L firmware version 1.17B01 BETA is vulnerable to stack overflow via /goform/formTcpipSetup,
nvd
CVE-2026-2056P3HIGHCVSS 7.5v2.06b012026-02-06
CVE-2026-2056 [HIGH] CWE-200 CVE-2026-2056: A security vulnerability has been detected in D-Link DIR-605L and DIR-619L 2.06B01/2.13B01. The impa A security vulnerability has been detected in D-Link DIR-605L and DIR-619L 2.06B01/2.13B01. The impacted element is an unknown function of the file /wan_connection_status.asp of the component DHCP Connection Status Handler. The manipulation leads to information disclosure. Remote exploitation of the attack is possible. The exploit has been disclosed pub
nvd
CVE-2024-37630P3HIGHCVSS 8.8v2.13b012024-06-13
CVE-2024-37630 [HIGH] CWE-798 CVE-2024-37630: D-Link DIR-605L v2.13B01 was discovered to contain a hardcoded password vulnerability in /etc/passwd D-Link DIR-605L v2.13B01 was discovered to contain a hardcoded password vulnerability in /etc/passwd, which allows attackers to log in as root.
nvd
CVE-2025-46176P3MEDIUMCVSS 6.5v2.13b012025-05-23
CVE-2025-46176 [MEDIUM] CWE-77 CVE-2025-46176: Hardcoded credentials in the Telnet service in D-Link DIR-605L v2.13B01 and DIR-816L v2.06B01 allow Hardcoded credentials in the Telnet service in D-Link DIR-605L v2.13B01 and DIR-816L v2.06B01 allow attackers to remotely execute arbitrary commands via firmware analysis.
nvd
CVE-2025-65731P3MEDIUMCVSS 6.8v6.02cn022026-01-08
CVE-2025-65731 [MEDIUM] CWE-306 CVE-2025-65731: An issue was discovered in D-Link Router DIR-605L (Hardware version F1; Firmware version: V6.02CN02) An issue was discovered in D-Link Router DIR-605L (Hardware version F1; Firmware version: V6.02CN02) allowing an attacker with physical access to the UART pins to execute arbitrary commands due to presence of root terminal access on a serial interface without proper access control.
nvd
CVE-2025-2546P4MEDIUMCVSS 4.3v3.022025-03-20
CVE-2025-2546 [MEDIUM] CWE-266 CVE-2025-2546: A vulnerability classified as problematic was found in D-Link DIR-618 and DIR-605L 2.02/3.02. This v A vulnerability classified as problematic was found in D-Link DIR-618 and DIR-605L 2.02/3.02. This vulnerability affects unknown code of the file /goform/formAdvFirewall of the component Firewall Service. The manipulation leads to improper access controls. The attack needs to be approached within the local network. The exploit has been disclosed to th
nvd
CVE-2025-2553P4MEDIUMCVSS 4.3v3.022025-03-20
CVE-2025-2553 [MEDIUM] CWE-266 CVE-2025-2553: A vulnerability was found in D-Link DIR-618 and DIR-605L 2.02/3.02. It has been rated as problematic A vulnerability was found in D-Link DIR-618 and DIR-605L 2.02/3.02. It has been rated as problematic. This issue affects some unknown processing of the file /goform/formVirtualServ. The manipulation leads to improper access controls. The attack needs to be approached within the local network. The exploit has been disclosed to the public and may be use
nvd
CVE-2025-2552P4MEDIUMCVSS 4.3v3.022025-03-20
CVE-2025-2552 [MEDIUM] CWE-266 CVE-2025-2552: A vulnerability was found in D-Link DIR-618 and DIR-605L 2.02/3.02. It has been declared as problema A vulnerability was found in D-Link DIR-618 and DIR-605L 2.02/3.02. It has been declared as problematic. This vulnerability affects unknown code of the file /goform/formTcpipSetup. The manipulation leads to improper access controls. Access to the local network is required for this attack to succeed. The exploit has been disclosed to the public and may
nvd