CVE-2025-2549 | D-Link DIR-618/DIR-605L 2.02/3.02 /goform/formSetPassword access control
A vulnerability has been found in D-Link DIR-618 and DIR-605L 2.02/3.02 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /goform/formSetPassword. The manipulation leads to improper access controls. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is known as CVE-2025-2549. The attack needs to be done within the local network. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.