PT-2025-21872 · D Link · D-Link Di-7003Gv2

153528990

·

Published

2025-05-18

·

Updated

2025-05-19

·

CVE-2025-4904

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions: D-Link DI-7003GV2 version 24.04.18D1 R(68125)
Description: A vulnerability has been found in the D-Link DI-7003GV2, affecting the function sub 41F0FC of the file /H5/webgl.data. This issue leads to information disclosure and can be initiated remotely.
Recommendations: For D-Link DI-7003GV2 version 24.04.18D1 R(68125), as a temporary workaround, consider restricting access to the vulnerable function sub 41F0FC until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Access Control

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2025-08876
CVE-2025-4904

Affected Products

D-Link Di-7003Gv2