CVE-2025-60561
7.5D-Link · DIR600L
A buffer overflow vulnerability exists in the D-Link DIR600L router within the formSetEmail function, which can be triggered via the curTime parameter.
Executive summary
A critical buffer overflow vulnerability in D-Link DIR600L routers allows unauthenticated attackers to cause a denial of service condition.
Vulnerability
This is a buffer overflow vulnerability located in the formSetEmail function of the device firmware. The flaw is reachable by an unauthenticated attacker sending a crafted request to the curTime parameter.
Business impact
The vulnerability carries a CVSS score of 7.5, indicating a high severity risk. Successful exploitation results in a denial of service, which can disrupt network connectivity and impact business operations that rely on this hardware for communication or internet access.
Remediation
Immediate Action: Since no official patch is currently available, users should restrict administrative access to the device and prevent exposure to the public internet.
Proactive Monitoring: Monitor network traffic for anomalous requests directed at the device management interface, specifically those targeting email configuration parameters.
Compensating Controls: Implement firewall rules to block unauthorized inbound connections to the router management interface, effectively reducing the attack surface.
Exploitation status
Public Exploit Available: Yes, a public proof-of-concept exists, as documented in the technical write-up referenced by the CVE record.
Analyst recommendation
Given the availability of a public proof-of-concept and the high severity of the vulnerability, administrators must treat this as a significant risk. If a firmware update is not provided by D-Link, consider replacing the affected hardware with a supported device to ensure ongoing security.