PT-2025-21870 · D Link · D-Link Di-7003Gv2

153528990

·

Published

2025-05-18

·

Updated

2025-05-19

·

CVE-2025-4902

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: D-Link DI-7003GV2 version 24.04.18D1 R(68125)
Description: A problematic issue has been found, affecting the function sub 48F4F0 of the file /H5/versionupdate.data. This leads to information disclosure and can be exploited remotely.
Recommendations: For D-Link DI-7003GV2 version 24.04.18D1 R(68125), as a temporary workaround, consider restricting access to the sub 48F4F0 function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Access Control

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2025-05862
CVE-2025-4902

Affected Products

D-Link Di-7003Gv2