Vulnerability Description
A vulnerability was found in D-Link DIR-619L 2.04B04. It has been declared as critical. This vulnerability affects the function wake_on_lan. The manipulation of the argument mac leads to command injection. The attack can be initiated remotely. The vendor was contacted early about this disclosure. This vulnerability only affects products that are no longer supported by the maintainer.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dlink | Dir-619L Firmware | 2.04b04 |
| Dlink | Dir-619L | - |
Related Weaknesses (CWE)
References
- https://github.com/jylsec/vuldb/blob/main/D-Link/dlink_dir619l/Command_injectionBroken Link
- https://vuldb.com/?ctiid.308068Permissions Required
- https://vuldb.com/?id.308068Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.560798Third Party AdvisoryVDB Entry
- https://www.dlink.com/Product
FAQ
What is CVE-2025-4454?
CVE-2025-4454 is a vulnerability with a CVSS score of 6.3 (MEDIUM). A vulnerability was found in D-Link DIR-619L 2.04B04. It has been declared as critical. This vulnerability affects the function wake_on_lan. The manipulation of the argument mac leads to command injec...
How severe is CVE-2025-4454?
CVE-2025-4454 has been rated MEDIUM with a CVSS base score of 6.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-4454?
Check the references section above for vendor advisories and patch information. Affected products include: Dlink Dir-619L Firmware, Dlink Dir-619L.