High severity8.8NVD Advisory· Published Apr 10, 2026· Updated Apr 30, 2026
CVE-2026-6013
CVE-2026-6013
Description
A vulnerability was detected in D-Link DIR-513 1.10. This vulnerability affects the function formSetRoute of the file /goform/formSetRoute of the component POST Request Handler. The manipulation of the argument curTime results in buffer overflow. The attack may be performed from remote. The exploit is now public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Affected products
1- cpe:2.3:o:dlink:dir-513_firmware:1.10:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- lavender-bicycle-a5a.notion.site/D-Link-DIR-513-formSetRoute-33153a41781f80f7aed1d3614c199d85nvdExploitThird Party Advisory
- vuldb.com/submit/791859nvdThird Party AdvisoryVendor Advisory
- vuldb.com/vuln/356569nvdThird Party AdvisoryVendor Advisory
- vuldb.com/vuln/356569/ctinvdPermissions RequiredVDB Entry
- www.dlink.comnvdProduct
News mentions
0No linked articles in our index yet.