CVE-2023-25281: High severity d-link dir-820l firmware vulnerability
Published Mar 16, 2023
·Updated
A stack overflow vulnerability exists in pingV4Msg component in D-Link DIR820LA1FW105B03, allows attackers to cause a denial of service via the nextPage parameter to ping.ccp.
Affected Software
4 affected components
Dlink Dir820la1 Firmware=105b03
Dlink Dir820la1
All of the following
Dlink Dir-820l Firmware=1.05b03
Dlink Dir-820l=a1
Event History
Mar 16, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-25281?
CVE-2023-25281 has been classified as a high severity vulnerability due to its potential for causing denial of service.
2
How do I fix CVE-2023-25281?
To mitigate CVE-2023-25281, you should update your D-Link DIR820LA1 firmware to version 105b04 or later.
3
What is affected by CVE-2023-25281?
CVE-2023-25281 affects the D-Link DIR820LA1 firmware version 105b03.
4
What type of vulnerability is CVE-2023-25281?
CVE-2023-25281 is a stack overflow vulnerability that can be exploited via the nextPage parameter.
5
Can CVE-2023-25281 be exploited remotely?
Yes, CVE-2023-25281 can be exploited remotely, potentially allowing attackers to cause a denial of service.