CVE-2025-4445: D-Link DIR-605L wake_on_lan command injection
A vulnerability classified as critical has been found in D-Link DIR-605L 2.13B01. Affected is the function wakeonlan. The manipulation of the argument mac leads to command injection. It is possible to launch the attack remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4445?
CVE-2025-4445 is classified as a critical severity vulnerability.
What is the impact of CVE-2025-4445?
The CVE-2025-4445 vulnerability allows for command injection through the wake_on_lan function of affected D-Link DIR-605L devices.
How do I fix CVE-2025-4445?
To fix CVE-2025-4445, it is recommended to update the firmware of the D-Link DIR-605L to the latest version provided by the vendor.
Can CVE-2025-4445 be exploited remotely?
Yes, CVE-2025-4445 can be exploited remotely, making it critical for users to take action.
Which devices are affected by CVE-2025-4445?
CVE-2025-4445 affects the D-Link DIR-605L with firmware version 2.13B01.