CVE-2026-2054

A security flaw has been discovered in D-Link DIR-605L and DIR-619L 2.06B01/2.13B01. Impacted is an unknown function of the component Wifi Setting Handler. Performing a manipulation results in information disclosure. The attack may be initiated remotely. The exploit has been released to the public and may be used for attacks. This vulnerability only affects products that are no longer supported by the maintainer.
References
Link Resource
https://github.com/wudipjq/my_vuln/blob/main/D-Link7/vuln_81/81.md Exploit Third Party Advisory
https://github.com/wudipjq/my_vuln/blob/main/D-Link7/vuln_81/81.md#poc--result Exploit Third Party Advisory
https://vuldb.com/?ctiid.344614 Permissions Required VDB Entry
https://vuldb.com/?id.344614 Third Party Advisory VDB Entry
https://vuldb.com/?submit.744224 Third Party Advisory VDB Entry
https://www.dlink.com/ Product
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:dlink:dir-605l_firmware:2.06b01:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-605l:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:dlink:dir-619l_firmware:2.13b01:*:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-619l:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-02-06 13:15

Updated : 2026-02-17 19:09


NVD link : CVE-2026-2054

Mitre link : CVE-2026-2054

CVE.ORG link : CVE-2026-2054


JSON object : View

Products Affected

dlink

  • dir-605l_firmware
  • dir-619l_firmware
  • dir-605l
  • dir-619l
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-284

Improper Access Control

NVD-CWE-Other