CVE-2008-1258: XSS
Cross-site scripting (XSS) vulnerability in prim.htm on the D-Link DI-604 router allows remote attackers to inject arbitrary web script or HTML via the rf parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1258?
CVE-2008-1258 is classified as a medium severity vulnerability due to its potential for exploitation via cross-site scripting.
How do I fix CVE-2008-1258?
To mitigate CVE-2008-1258, update the D-Link DI-604 router to the latest firmware version provided by the manufacturer.
Who is affected by CVE-2008-1258?
CVE-2008-1258 affects users of the D-Link DI-604 router that have not implemented security best practices or firmware updates.
What type of attack is possible with CVE-2008-1258?
CVE-2008-1258 allows remote attackers to perform cross-site scripting (XSS) attacks by injecting arbitrary HTML or web scripts.
Can CVE-2008-1258 be exploited without authentication?
Yes, CVE-2008-1258 can be exploited remotely and does not require authentication, making it more critical for affected users.