CVE-2019-7736: D-Link Dir-600m Firmware

Critical severity, CVSS 9.8. EPSS: 2.7% chance of exploitation in the next 30 days.

D-Link DIR-600M C1 3.04 devices allow authentication bypass via a direct request to the wan.htm page. NOTE: this may overlap CVE-2019-13101.

Affected products

  • D-Link Dir-600m Firmware: version 3.04 only

Published 2019-02-11. Last modified 2026-06-17.