CVE-2025-60558

7.5

D-Link · DIR600L

A buffer overflow vulnerability exists in the D-Link DIR600L router within the formVirtualServ function, triggered by the curTime parameter.

Executive summary

The D-Link DIR600L router contains a buffer overflow vulnerability that could allow an unauthenticated attacker to cause a denial of service.

Vulnerability

This is a buffer overflow vulnerability located in the formVirtualServ function. The flaw is reachable via the curTime parameter and can be triggered by an unauthenticated attacker over the network.

Business impact

The vulnerability carries a CVSS score of 7.5, indicating a high severity risk. Successful exploitation results in a denial of service, which can lead to significant operational disruption for users relying on the device for network connectivity.

Remediation

Immediate Action: Contact D-Link support or check the official product support portal for firmware updates addressing this buffer overflow.

Proactive Monitoring: Monitor network traffic for unusual requests directed at administrative or configuration endpoints and review system logs for unexpected crashes or reboots.

Compensating Controls: Restrict access to the router management interface to trusted internal IP addresses only, and ensure the device is not directly exposed to the public internet.

Exploitation status

Public Exploit Available: Yes, a public proof-of-concept exists as documented in the research write-up by luckysmallbird.

Analyst recommendation

Given the high CVSS score and the existence of a public proof-of-concept, this vulnerability poses a credible threat to device availability. Administrators should prioritize investigating the status of their specific hardware revision and apply any available vendor patches immediately to prevent potential service interruption.

More D-Link CVEs

Sources