Dlink Dir-619L Firmware vulnerabilities

65 known vulnerabilities affecting dlink/dir-619l_firmware.

Total CVEs
65
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL5HIGH49MEDIUM11

Vulnerabilities

Page 2 of 4
CVE-2025-6115HIGHCVSS 7.4v2.06b012025-06-16
CVE-2025-6115 [HIGH] CWE-119 CVE-2025-6115: A vulnerability was found in D-Link DIR-619L 2.06B01 and classified as critical. Affected by this is A vulnerability was found in D-Link DIR-619L 2.06B01 and classified as critical. Affected by this issue is the function form_macfilter. The manipulation of the argument mac_hostname_%d/sched_name_%d leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. This vulnerability
nvd
CVE-2025-4449HIGHCVSS 8.7v2.04b042025-05-09
CVE-2025-4449 [HIGH] CWE-119 CVE-2025-4449: A vulnerability, which was classified as critical, has been found in D-Link DIR-619L 2.04B04. This i A vulnerability, which was classified as critical, has been found in D-Link DIR-619L 2.04B04. This issue affects the function formEasySetupWizard3. The manipulation of the argument wan_connected leads to buffer overflow. The attack may be initiated remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products t
nvd
CVE-2025-4450HIGHCVSS 8.7v2.04b042025-05-09
CVE-2025-4450 [HIGH] CWE-119 CVE-2025-4450: A vulnerability, which was classified as critical, was found in D-Link DIR-619L 2.04B04. Affected is A vulnerability, which was classified as critical, was found in D-Link DIR-619L 2.04B04. Affected is the function formSetEasy_Wizard. The manipulation of the argument curTime leads to buffer overflow. It is possible to launch the attack remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no l
nvd
CVE-2025-4452HIGHCVSS 8.7v2.04b042025-05-09
CVE-2025-4452 [HIGH] CWE-119 CVE-2025-4452: A vulnerability was found in D-Link DIR-619L 2.04B04 and classified as critical. Affected by this is A vulnerability was found in D-Link DIR-619L 2.04B04 and classified as critical. Affected by this issue is the function formSetWizard2. The manipulation of the argument curTime leads to buffer overflow. The attack may be launched remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no longer s
nvd
CVE-2025-4451HIGHCVSS 8.7v2.04b042025-05-09
CVE-2025-4451 [HIGH] CWE-119 CVE-2025-4451: A vulnerability has been found in D-Link DIR-619L 2.04B04 and classified as critical. Affected by th A vulnerability has been found in D-Link DIR-619L 2.04B04 and classified as critical. Affected by this vulnerability is the function formSetWAN_Wizard52. The manipulation of the argument curTime leads to buffer overflow. The attack can be launched remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products th
nvd
CVE-2025-4448HIGHCVSS 8.7v2.04b042025-05-09
CVE-2025-4448 [HIGH] CWE-119 CVE-2025-4448: A vulnerability classified as critical was found in D-Link DIR-619L 2.04B04. This vulnerability affe A vulnerability classified as critical was found in D-Link DIR-619L 2.04B04. This vulnerability affects the function formEasySetupWizard. The manipulation of the argument curTime leads to buffer overflow. The attack can be initiated remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no longe
nvd
CVE-2025-4453MEDIUMCVSS 5.3v2.04b042025-05-09
CVE-2025-4453 [MEDIUM] CWE-74 CVE-2025-4453: A vulnerability was found in D-Link DIR-619L 2.04B04. It has been classified as critical. This affec A vulnerability was found in D-Link DIR-619L 2.04B04. It has been classified as critical. This affects the function formSysCmd. The manipulation of the argument sysCmd leads to command injection. It is possible to initiate the attack remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no lon
nvd
CVE-2025-4454MEDIUMCVSS 5.3v2.04b042025-05-09
CVE-2025-4454 [MEDIUM] CWE-74 CVE-2025-4454: A vulnerability was found in D-Link DIR-619L 2.04B04. It has been declared as critical. This vulnera A vulnerability was found in D-Link DIR-619L 2.04B04. It has been declared as critical. This vulnerability affects the function wake_on_lan. The manipulation of the argument mac leads to command injection. The attack can be initiated remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no lon
nvd
CVE-2024-9909HIGHCVSS 8.7v2.06b12024-10-13
CVE-2024-9909 [HIGH] CWE-120 CVE-2024-9909: A vulnerability has been found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by th A vulnerability has been found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this vulnerability is the function formSetMuti of the file /goform/formSetMuti. The manipulation of the argument curTime leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9910HIGHCVSS 8.7v2.06b12024-10-13
CVE-2024-9910 [HIGH] CWE-120 CVE-2024-9910: A vulnerability was found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this is A vulnerability was found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this issue is the function formSetPassword of the file /goform/formSetPassword. The manipulation of the argument curTime leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9911HIGHCVSS 8.7v2.06b12024-10-13
CVE-2024-9911 [HIGH] CWE-120 CVE-2024-9911: A vulnerability was found in D-Link DIR-619L B1 2.06. It has been classified as critical. This affec A vulnerability was found in D-Link DIR-619L B1 2.06. It has been classified as critical. This affects the function formSetPortTr of the file /goform/formSetPortTr. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9913HIGHCVSS 8.7v2.06b12024-10-13
CVE-2024-9913 [HIGH] CWE-120 CVE-2024-9913: A vulnerability was found in D-Link DIR-619L B1 2.06. It has been rated as critical. This issue affe A vulnerability was found in D-Link DIR-619L B1 2.06. It has been rated as critical. This issue affects the function formSetRoute of the file /goform/formSetRoute. The manipulation of the argument curTime leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9915HIGHCVSS 8.7v2.06b12024-10-13
CVE-2024-9915 [HIGH] CWE-120 CVE-2024-9915: A vulnerability classified as critical was found in D-Link DIR-619L B1 2.06. Affected by this vulner A vulnerability classified as critical was found in D-Link DIR-619L B1 2.06. Affected by this vulnerability is the function formVirtualServ of the file /goform/formVirtualServ. The manipulation of the argument curTime leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9914HIGHCVSS 8.7v2.06b12024-10-13
CVE-2024-9914 [HIGH] CWE-120 CVE-2024-9914: A vulnerability classified as critical has been found in D-Link DIR-619L B1 2.06. Affected is the fu A vulnerability classified as critical has been found in D-Link DIR-619L B1 2.06. Affected is the function formSetWizardSelectMode of the file /goform/formSetWizardSelectMode. The manipulation of the argument curTime leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9912HIGHCVSS 8.7v2.06b12024-10-13
CVE-2024-9912 [HIGH] CWE-120 CVE-2024-9912: A vulnerability was found in D-Link DIR-619L B1 2.06. It has been declared as critical. This vulnera A vulnerability was found in D-Link DIR-619L B1 2.06. It has been declared as critical. This vulnerability affects the function formSetQoS of the file /goform/formSetQoS. The manipulation of the argument curTime leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9908MEDIUMCVSS 5.1v2.06b12024-10-13
CVE-2024-9908 [MEDIUM] CWE-120 CVE-2024-9908: A vulnerability, which was classified as critical, was found in D-Link DIR-619L B1 2.06. Affected is A vulnerability, which was classified as critical, was found in D-Link DIR-619L B1 2.06. Affected is the function formSetMACFilter of the file /goform/formSetMACFilter. The manipulation of the argument curTime leads to buffer overflow. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9784HIGHCVSS 8.7v2.062024-10-10
CVE-2024-9784 [HIGH] CWE-120 CVE-2024-9784: A vulnerability classified as critical has been found in D-Link DIR-619L B1 2.06. Affected is the fu A vulnerability classified as critical has been found in D-Link DIR-619L B1 2.06. Affected is the function formResetStatistic of the file /goform/formResetStatistic. The manipulation of the argument curTime leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9783HIGHCVSS 8.7v2.062024-10-10
CVE-2024-9783 [HIGH] CWE-120 CVE-2024-9783: A vulnerability was found in D-Link DIR-619L B1 2.06. It has been rated as critical. This issue affe A vulnerability was found in D-Link DIR-619L B1 2.06. It has been rated as critical. This issue affects the function formLogDnsquery of the file /goform/formLogDnsquery. The manipulation of the argument curTime leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9786HIGHCVSS 8.7v2.06b12024-10-10
CVE-2024-9786 [HIGH] CWE-120 CVE-2024-9786: A vulnerability, which was classified as critical, has been found in D-Link DIR-619L B1 2.06. Affect A vulnerability, which was classified as critical, has been found in D-Link DIR-619L B1 2.06. Affected by this issue is the function formSetLog of the file /goform/formSetLog. The manipulation of the argument curTime leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2024-9782HIGHCVSS 8.7v2.062024-10-10
CVE-2024-9782 [HIGH] CWE-120 CVE-2024-9782: A vulnerability was found in D-Link DIR-619L B1 2.06. It has been declared as critical. This vulnera A vulnerability was found in D-Link DIR-619L B1 2.06. It has been declared as critical. This vulnerability affects the function formEasySetupWWConfig of the file /goform/formEasySetupWWConfig. The manipulation of the argument curTime leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be u
nvd