PT-2025-31005 · D Link · Dir-890L
Nich0Las
·
Published
2025-07-27
·
Updated
2025-07-27
·
CVE-2025-8231
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
D-Link DIR-890L versions up to 111b04
Description
A critical issue has been identified in D-Link DIR-890L. The vulnerability relates to the processing of the
rgbin file within the UART Port component, leading to the exposure of hard-coded credentials. This issue can be exploited on a physical device. The exploit has been publicly disclosed. This vulnerability affects products that are no longer supported by the maintainer.Recommendations
Versions prior to 111b05: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Dir-890L