D-Link DIR-878 Information Disclosure Vulnerability in HTTP POST Request Handler

Vulnerability

An information disclosure vulnerability has been identified in the D-Link DIR-878 router, specifically in version 1.03. The issue arises from an unknown function in the file '/dllog.cgi', within the HTTP POST request handler component. This vulnerability allows sensitive information to be exposed to unauthorized actors, potentially impacting confidentiality. The vulnerability can be exploited remotely, without any authentication requirements.

Impact

Exploitation of this vulnerability leads to unauthorized information disclosure.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
5.7
impact
2.5
exploitability
9.1
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
9.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.