CVE-2018-6210: D-Link Dir-620 Firmware

Critical severity, CVSS 9.8. EPSS: 3.1% chance of exploitation in the next 30 days.

D-Link DIR-620 devices, with a certain Rostelekom variant of firmware 1.0.37, have a hardcoded rostel account, which makes it easier for remote attackers to obtain access via a TELNET session.

Affected products

  • D-Link Dir-620 Firmware: version 1.0.37 only

Published 2018-06-19. Last modified 2026-06-17.