CVE Details
Basic Information
| Title |
CVE-2025-4902 |
| Type |
cve |
| Published |
2025-05-19T01:15:20 |
| Last Seen |
2025-05-19T01:21:53 |
CVSS Information
| Base Score |
5.3 (MEDIUM) |
| Attack Vector |
NETWORK |
| Attack Complexity |
LOW |
| Privileges Required |
NONE |
| User Interaction |
NONE |
| Scope |
UNCHANGED |
| Confidentiality Impact |
LOW |
| Integrity Impact |
NONE |
| Availability Impact |
NONE |
AI Analysis
| AI Description |
A vulnerability in the D-Link DI-7003GV2 router allows unauthorized access to sensitive information via the /H5/versionupdate.data file. The issue is due to improper access controls, potentially exposing firmware version details or other sensitive data. |
| AI Severity |
Medium |
| Vendor |
D-Link |
| Product |
DI-7003GV2 |
| Affected Version |
24.04.18D1 R(68125) |
Additional Information
| CVE List |
CVE-2025-4902 |
| CWE List |
CWE-284, CWE-200 |
| Bulletin Family |
cve |
Description
A vulnerability, which was classified as problematic, has been found in D-Link DI-7003GV2 24.04.18D1 R(68125). Affected by this issue is the function sub_48F4F0 of the file /H5/versionupdate.data. The manipulation…
CVSS Score Summary
Base Score: %!f(string=#) (MEDIUM)
View Full CVE Details