D-Link DIR-605L
cpe:2.3:h:d-link:dir-605l:*:*:*:*:*:*:*, +2 more
- 2.02
- 3.02
A vulnerability exists in the D-Link DIR-605L and DIR-618 routers, specifically in versions 2.02 and 3.02. The issue arises within the DDNS service component, particularly in the '/goform/formSetDDNS' file. This vulnerability allows for improper access controls, enabling unauthorized users to manipulate DDNS settings. Exploitation requires no authentication and must be initiated from within the local network.
Exploitation of this vulnerability allows for unauthorized modification of DDNS settings, potentially leading to misdirection of network traffic or disruption of services that rely on dynamic DNS.
To reproduce this vulnerability, send an unauthenticated HTTP POST request to the '/goform/formSetDDNS' endpoint. The request must include the appropriate headers to indicate the DDNS service settings being modified. This can be done using tools that allow for the crafting of HTTP requests, such as Postman or curl.
It is recommended to implement firewall rules to block unauthorized access to the vulnerable DDNS service endpoint.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.