D-Link DIR-605L and DIR-618 Improper Access Control Vulnerability

Vulnerability

A vulnerability exists in the D-Link DIR-605L and DIR-618 routers, specifically in versions 2.02 and 3.02. The issue arises from improper access controls in the web management interface, allowing unauthorized users to manipulate password settings. Exploitation requires sending an unauthenticated HTTP POST request to the '/goform/formSetPassword' endpoint.

Impact

Exploitation of this vulnerability allows for unauthorized password changes, potentially leading to unauthorized access or control over the device.

Reproduction

To reproduce this vulnerability, send an unauthenticated HTTP POST request to the '/goform/formSetPassword' endpoint. Include the new password in the request. The vulnerability can be exploited from within the local network.

Remediation

It is recommended to implement proper firewall rules to block unauthorized access to the router's management interface.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
5.7
impact
2.5
exploitability
6.2
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.