PT-2026-31403 · D Link · Di-8003G
Published
2026-04-08
·
Updated
2026-04-13
·
CVE-2025-50671
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
D-Link DI-8003 version 16.07.26A1
Description
A stack-based buffer overflow occurs due to improper handling of parameters in the '/xwgl ref.asp' endpoint. A remote attacker can cause a denial of service by sending a crafted HTTP GET request containing excessively long strings in the
name, en, user id, shibie name, time, act, log, and rpri parameters.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Di-8003G