CVE-2014-100005: D-Link DIR-600 Router
EPSS43.4%No. 908 of 1739 in KEV
CVE year2014~10 yrs before listing
Same vendor in KEV26
Same product1
| Field | Value |
|---|---|
| Vendor | D-Link |
| Product | DIR-600 Router |
| Name | D-Link DIR-600 Router Cross-Site Request Forgery (CSRF) Vulnerability |
| Added to KEV | 2024-05-16 |
| US federal due date | 2024-06-06 |
| Ransomware use | Unknown |
| CWE | CWE-352 |
CISA description
D-Link DIR-600 routers contain a cross-site request forgery (CSRF) vulnerability that allows an attacker to change router configurations by hijacking an existing administrator session.
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
A D-Link DIR-600 Router vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2024-05-16.