High severity8.8NVD Advisory· Published Apr 9, 2026· Updated Apr 30, 2026
CVE-2026-5979
CVE-2026-5979
Description
A vulnerability was detected in D-Link DIR-605L 2.13B01. Affected by this vulnerability is the function formVirtualServ of the file /goform/formVirtualServ of the component POST Request Handler. The manipulation of the argument curTime results in buffer overflow. The attack can be launched remotely. The exploit is now public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Affected products
1- cpe:2.3:o:dlink:dir-605l_firmware:2.13b01:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- lavender-bicycle-a5a.notion.site/D-Link-DIR-605L-formVirtualServ-33153a41781f80b496e1de206077bc7envdExploitThird Party Advisory
- vuldb.com/submit/791852nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/356533nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/356533/ctinvdPermissions RequiredVDB Entry
- www.dlink.comnvdProduct
News mentions
0No linked articles in our index yet.