CVE-2025-0481: D-Link DIR-878 HTTP POST Request dllog.cgi information disclosure
Published Jan 15, 2025
·Updated
A vulnerability classified as problematic has been found in D-Link DIR-878 1.03. Affected is an unknown function of the file /dllog.cgi of the component HTTP POST Request Handler. The manipulation leads to information disclosure. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
3 affected components
D-Link DIR-878
All of the following
Dlink Dir-878 Firmware=1.03
Dlink Dir-878
Event History
Jan 15, 2025
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-0481?
CVE-2025-0481 is classified as a problematic vulnerability.
2
How do I fix CVE-2025-0481?
To mitigate CVE-2025-0481, update the D-Link DIR-878 firmware to the latest version provided by the manufacturer.
3
What type of vulnerability is CVE-2025-0481?
CVE-2025-0481 is an information disclosure vulnerability.
4
Can CVE-2025-0481 be exploited remotely?
Yes, CVE-2025-0481 can be exploited remotely.
5
Which D-Link products are impacted by CVE-2025-0481?
The D-Link DIR-878 router is impacted by CVE-2025-0481.