We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-4350

D-Link DIR-600L wake_on_lan command injection



Description

EN DE

A vulnerability classified as critical was found in D-Link DIR-600L up to 2.07B01. This vulnerability affects the function wake_on_lan. The manipulation of the argument host leads to command injection. The attack can be initiated remotely. This vulnerability only affects products that are no longer supported by the maintainer.

In D-Link DIR-600L bis 2.07B01 wurde eine Schwachstelle entdeckt. Sie wurde als kritisch eingestuft. Dabei geht es um die Funktion wake_on_lan. Durch das Manipulieren des Arguments host mit unbekannten Daten kann eine command injection-Schwachstelle ausgenutzt werden. Die Umsetzung des Angriffs kann dabei über das Netzwerk erfolgen.

Reserved 2025-05-05 | Published 2025-05-06 | Updated 2025-05-06 | Assigner VulDB


HIGH: 8.7CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
HIGH: 8.8CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
HIGH: 8.8CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
9.0AV:N/AC:L/Au:S/C:C/I:C/A:C

Problem types

Command Injection

Injection

Product status

2.07B01
affected

Timeline

2025-05-05:Advisory disclosed
2025-05-05:VulDB entry created
2025-05-05:VulDB entry last update

Credits

B1Nn (VulDB User) reporter

References

vuldb.com/?id.307468 (VDB-307468 | D-Link DIR-600L wake_on_lan command injection) vdb-entry technical-description

vuldb.com/?ctiid.307468 (VDB-307468 | CTI Indicators (IOB, IOC, TTP, IOA)) signature permissions-required

vuldb.com/?submit.558303 (Submit #558303 | D-Link DIR-600L 2.07B01 Command Injection) third-party-advisory

github.com/...0l/Command_injection-wake_on_lan-mac/README.md related

www.dlink.com/ product

cve.org (CVE-2025-4350)

nvd.nist.gov (CVE-2025-4350)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-4350

Support options

Helpdesk Chat, Email, Knowledgebase