CSRF exists on D-Link DIR-600M Rev. Cx devices before v3.05ENB01_beta_20170306. This can be used to bypass authentication and insert XSS sequences or possibly have unspecified other impact.Referenceshttp://www.securityfocus.com/bid/96999http://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10072