CVE-2025-46176: D-Link Dir-605l Firmware

Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Hardcoded credentials in the Telnet service in D-Link DIR-605L v2.13B01 and DIR-816L v2.06B01 allow attackers to remotely execute arbitrary commands via firmware analysis.

Affected products

  • D-Link Dir-605l Firmware: version 2.13b01 only
  • D-Link Dir-816l Firmware: version 2.06b01 only

Published 2025-05-23. Last modified 2026-06-17.