CVE-2025-1103: D-Link DIR-823X HTTP POST Request set_wifi_blacklists null pointer dereference
A vulnerability, which was classified as problematic, was found in D-Link DIR-823X 240126/240802. This affects the function setwifiblacklists of the file /goform/setwifiblacklists of the component HTTP POST Request Handler. The manipulation of the argument macList leads to null pointer dereference. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1103?
CVE-2025-1103 is classified as a problematic vulnerability affecting the D-Link DIR-823X router.
What components are affected by CVE-2025-1103?
CVE-2025-1103 impacts the set_wifi_blacklists function in the HTTP POST Request Handler of the D-Link DIR-823X router.
How do I fix CVE-2025-1103?
To fix CVE-2025-1103, update the D-Link DIR-823X router to the latest firmware version provided by the vendor.
What type of attack could exploit CVE-2025-1103?
CVE-2025-1103 could potentially be exploited through crafted HTTP POST requests targeting the macList argument.
Do I need to be concerned about CVE-2025-1103?
Yes, CVE-2025-1103 poses a risk to the security of your network and should be addressed promptly.