Severity
High
Analysis Summary
CVE-2025-4347 CVSS:8.8
D-Link DIR-600L router could allow a remote attacker to execute arbitrary code on the system, caused by a buffer overflow in the formWlSiteSurvey function.
CVE-2025-4348 CVSS:8.8
D-Link DIR-600L router could allow a remote attacker to execute arbitrary code on the system, caused by a buffer overflow in the formSetWanL2TP function.
Impact
- Code Execution
Indicators of Compromise
CVE
CVE-2025-4347
CVE-2025-4348
Affected Vendors
- D-Link
Affected Products
- D-Link DIR-600L - 2.07B01
Remediation
Refer to the D-Link Website for patch, upgrade, or suggested workaround information.

