High severity8.8NVD Advisory· Published Apr 9, 2026· Updated Apr 30, 2026
CVE-2026-5983
CVE-2026-5983
Description
A vulnerability was determined in D-Link DIR-605L 2.13B01. This issue affects the function formSetDDNS of the file /goform/formSetDDNS of the component POST Request Handler. Executing a manipulation of the argument curTime can lead to buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized. This vulnerability only affects products that are no longer supported by the maintainer.
Affected products
1- cpe:2.3:o:dlink:dir-605l_firmware:2.13b01:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- lavender-bicycle-a5a.notion.site/D-Link-DIR-605L-formSetDDNS-33153a41781f802f9997f48dc9cf6304nvdExploitThird Party Advisory
- vuldb.com/submit/791856nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/356537nvdThird Party AdvisoryVDB Entry
- vuldb.com/vuln/356537/ctinvdPermissions RequiredVDB Entry
- www.dlink.comnvdProduct
News mentions
0No linked articles in our index yet.