CVE-2026-6013
high
CVSS v3
8.8
CVSS v2
9.0
VIR risk
8.8
Description
A vulnerability was detected in D-Link DIR-513 1.10. This vulnerability affects the function formSetRoute of the file /goform/formSetRoute of the component POST Request Handler. The manipulation of the argument curTime results in buffer overflow. The attack may be performed from remote. The exploit is now public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Predictions
Exploit likelihood
92%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cna@vuldb.com — https://vuldb.com/vuln/356569
Vendor advisory: cna@vuldb.com — https://vuldb.com/submit/791859
References
CWEs
CWE-119 CWE-120
Verify integrity in audit chain (admin only). AS-IS.