PT-2025-33406 · D Link · D-Link Dir-619L
Iot_Res
·
Published
2025-06-22
·
Updated
2025-09-12
·
CVE-2025-8978
CVSS v3.1
8.1
High
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
D-Link DIR-619L version 6.02CN02
Description:
A vulnerability exists in the
FirmwareUpgrade function of the boa component, leading to insufficient verification of data authenticity. The attack can be launched remotely, but is considered difficult to exploit. The exploit has been publicly disclosed. This vulnerability affects products that are no longer supported by the maintainer.Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Insufficient Verification of Data Authenticity
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
D-Link Dir-619L