First published: Mon Mar 10 2008(Updated: )
Cross-site scripting (XSS) vulnerability in prim.htm on the D-Link DI-604 router allows remote attackers to inject arbitrary web script or HTML via the rf parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
D-Link DI-604 Broadband Router | ||
D-Link DI-604 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1258 is classified as a medium severity vulnerability due to its potential for exploitation via cross-site scripting.
To mitigate CVE-2008-1258, update the D-Link DI-604 router to the latest firmware version provided by the manufacturer.
CVE-2008-1258 affects users of the D-Link DI-604 router that have not implemented security best practices or firmware updates.
CVE-2008-1258 allows remote attackers to perform cross-site scripting (XSS) attacks by injecting arbitrary HTML or web scripts.
Yes, CVE-2008-1258 can be exploited remotely and does not require authentication, making it more critical for affected users.