VYPR
Unrated severityNVD Advisory· Published May 19, 2025· Updated May 19, 2025

D-Link DI-7003GV2 webgl.asp sub_41F4F0 unverified password change

CVE-2025-4903

Description

A vulnerability, which was classified as critical, was found in D-Link DI-7003GV2 24.04.18D1 R(68125). This affects the function sub_41F4F0 of the file /H5/webgl.asp?tggl_port=0&remote_management=0&http_passwd=game&exec_service=admin-restart. The manipulation leads to unverified password change. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Affected products

2
  • Dlink/DI-7003GV2llm-fuzzy
    Range: = 24.04.18D1 R(68125)
  • D-Link/DI-7003GV2v5
    Range: 24.04.18D1 R(68125)

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.