CVE-2025-60568

7.5

D-Link · DIR600L

A buffer overflow vulnerability exists in the D-Link DIR600L router within the formAdvFirewall function, reachable via the curTime parameter.

Executive summary

A critical buffer overflow vulnerability in the D-Link DIR600L router allows unauthenticated attackers to cause a denial of service.

Vulnerability

This is a buffer overflow vulnerability located in the formAdvFirewall function, triggered by supplying malicious input to the curTime parameter. The CVSS vector indicates that the attack is network-based, requires no authentication, and does not require user interaction.

Business impact

The successful exploitation of this vulnerability results in a denial of service, rendering the affected networking hardware unresponsive. Given the CVSS score of 7.5, this high-severity flaw poses a significant risk to business continuity, as compromised routers can disrupt all network traffic and connectivity for connected users and systems.

Remediation

Immediate Action: Contact the vendor or monitor the official D-Link support portal for the release of a firmware update that addresses this buffer overflow.

Proactive Monitoring: Review device logs for unusual traffic patterns or service crashes, and monitor network performance for intermittent connectivity drops that may indicate exploitation attempts.

Compensating Controls: Restrict management access to the router to trusted internal IP addresses only, and ensure that the device web interface is not exposed to the public internet.

Exploitation status

Public Exploit Available: Yes, a public proof-of-concept exists as documented in the researcher's technical write-up referenced in the CVE record.

Analyst recommendation

This vulnerability represents a high-risk exposure for D-Link DIR600L users. Because the vulnerability is reachable by unauthenticated remote attackers, it is imperative to isolate the device from external network exposure immediately. Administrators must prioritize applying the relevant firmware patch as soon as it becomes available from the vendor to restore the security and stability of the network environment.

More D-Link CVEs

Sources