CVE-2026-5982Disclosure(dlink / dir-605l)

LOWCVSS 7.4 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A vulnerability was found in D-Link DIR-605L 2.13B01. This vulnerability affects the function formAdvNetwork of the file /goform/formAdvNetwork of the component POST Request Handler. Performing a manipulation of the argument curTime results in buffer overflow. Remote exploitation of the attack is possible. The exploit has been made public and could be used. This vulnerability only affects products that are no longer supported by the maintainer.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • dir-605l
  • dir-605l_firmware

Threat summary

  • Public PoC is present in monitored signal
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 3 mentions (2026-04-09); latest day: 1
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
dir-605ldir-605l_firmware

2 versions affected across 2 products

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-04-09: 3Mentions · 2026-04-10: 1PoC Mentioned / Linked · 2026-04-10: 1Technical Details · 2026-04-09: 3Technical Details · 2026-04-10: 104-0904-10
Signal classification1 categories
Disclosure
4100.0%
Referenced assets9 URLs
Classification over time
DateTotalLabels
2026-04-093
Disclosure3
2026-04-101
Disclosure1
Full discourse4 posts
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-5982: HIGH] Critical vulnerability found in D-Link DIR-605L 2.13B01 allows remote exploitation via buffer overflow in the component POST Request Handler due to time manipulation. Products no longer s...#cve,CVE-2026-5982,#cybersecurity https://cvefind.com/CVE-2026-5982

    Post summary

    The tweet announces a high‑severity buffer overflow vulnerability (CVE‑2026‑5982) in the D‑Link DIR‑605L router, allowing remote exploitation via a time‑manipulation‑triggered POST Request Handler.

    0001057
    619 followersView on X
  • dbugs@ptdbugs
    Disclosure

    D-Link DIR-605L POST Request formAdvNetwork buffer overflow CVE: CVE-2026-5982 PT ID: PT-2026-31795 Vendor: D-link Product: DIR-605L CVSS: 8.7 Credits: wxhwxhwxh_mie (VulDB User) Description: A vulnerability was found in D-Link DIR-605L 2.13B01. This vulnerability affects the function formAdvNetwork of the file /goform/formAdvNetwork of the component POST Request Handler. Performing a manipulation of the argument curTime results in buffer overflow. Remote exploitation of the attack is possible. The exploit has been made public and could be used. This vulnerability only affects products that are no longer supported by the maintainer. References: • https://dbugs.ptsecurity.com/vulnerability/CVE-2026-5982 • https://vuldb.com/vuln/356536 • https://vuldb.com/vuln/356536/cti • https://vuldb.com/submit/791855 • https://lavender-bicycle-a5a.notion.site/D-Link-DIR-605L-formAdvNetwork-33153a41781f80f9a47bd5e073fc00ae?source=copy_link • https://www.dlink.com/ #dbugs_vuln

    Post summary

    A buffer overflow in D-Link DIR-605L’s formAdvNetwork POST handler allows remote exploitation; no patch is noted, but a PoC appears publicly available.

    0000077
    788 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-5982 Buffer Overflow in D-Link DIR-605L 2.13B01 POST Request Handler (Exploitation Public) https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-5982

    Post summary

    The post announces CVE-2026-5982, a buffer overflow in the D‑Link DIR‑605L router’s POST request handler; while the flaw is internally exploitable, no exploit code or confirmed active exploitation is reported.

    0000042
    4.0K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-5982 A vulnerability was found in D-Link DIR-605L 2.13B01. This vulnerability affects the function formAdvNetwork of the file /goform/formAdvNetwork of the component POST Re… https://www.cve.org/CVERecord?id=CVE-2026-5982

    Post summary

    A new vulnerability CVE-2026-5982 was identified in the D-Link DIR-605L firmware, affecting the formAdvNetwork function within the /goform/formAdvNetwork POST component.

    00000155
    57.0K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
HWdlinkdir-605l---
OSdlinkdir-605l_firmware2.13b01--

Explore more