Certain models of D-Link wireless routers have a hidden functionality where the telnet service is enabled when the WAN port is plugged in. Unauthorized remote attackers can log in and execute OS commands using hard-coded credentials.
https://supportannouncement.us.dlink.com/security/publication.aspx?name=SAP10412