CVE-2025-8978: D-Link DIR-619L boa FirmwareUpgrade data authenticity
A vulnerability was determined in D-Link DIR-619L 6.02CN02. Affected is the function FirmwareUpgrade of the component boa. The manipulation leads to insufficient verification of data authenticity. It is possible to launch the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-8978?
The severity of CVE-2025-8978 is classified as high due to its potential for remote exploitation.
How do I fix CVE-2025-8978?
To fix CVE-2025-8978, update your D-Link DIR-619L firmware to the latest version provided by D-Link.
How does CVE-2025-8978 affect the D-Link DIR-619L?
CVE-2025-8978 affects the D-Link DIR-619L by allowing insufficient verification of data authenticity during firmware upgrades.
Can CVE-2025-8978 be exploited remotely?
Yes, CVE-2025-8978 can be exploited remotely due to the nature of the vulnerability in the FirmwareUpgrade function.
What components are involved in CVE-2025-8978?
CVE-2025-8978 involves the boa component within the D-Link DIR-619L's firmware management.