CVE-2025-45784

D-Link DPH-400S/SE VoIP Phone v1.01 contains hardcoded provisioning variables, including PROVIS_USER_PASSWORD, which may expose sensitive user credentials. An attacker with access to the firmware image can extract these credentials using static analysis tools such as strings or xxd, potentially leading to unauthorized access to device functions or user accounts. This vulnerability exists due to insecure storage of sensitive information in the firmware binary.
References
Link Resource
https://cybermaya.in/posts/Post-37/ Third Party Advisory Exploit
https://www.dlink.com/en/security-bulletin/ Vendor Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:d-link:dph-400se_firmware:1.0.1:*:*:*:*:*:*:*
cpe:2.3:h:d-link:dph-400se:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:d-link:dph-400s_firmware:1.0.1:*:*:*:*:*:*:*
cpe:2.3:h:d-link:dph-400s:-:*:*:*:*:*:*:*

History

26 Jun 2025, 15:54

Type Values Removed Values Added
First Time D-link dph-400se Firmware
D-link dph-400s Firmware
D-link
D-link dph-400se
D-link dph-400s
CPE cpe:2.3:o:d-link:dph-400se_firmware:1.0.1:*:*:*:*:*:*:*
cpe:2.3:o:d-link:dph-400s_firmware:1.0.1:*:*:*:*:*:*:*
cpe:2.3:h:d-link:dph-400se:-:*:*:*:*:*:*:*
cpe:2.3:h:d-link:dph-400s:-:*:*:*:*:*:*:*
References () https://cybermaya.in/posts/Post-37/ - () https://cybermaya.in/posts/Post-37/ - Third Party Advisory, Exploit
References () https://www.dlink.com/en/security-bulletin/ - () https://www.dlink.com/en/security-bulletin/ - Vendor Advisory

23 Jun 2025, 20:16

Type Values Removed Values Added
Summary
  • (es) D-Link DPH-400S/SE VoIP Phone v1.01 contiene variables de aprovisionamiento codificadas, como PROVIS_USER_PASSWORD, que pueden exponer credenciales de usuario confidenciales. Un atacante con acceso a la imagen del firmware puede extraer estas credenciales mediante herramientas de análisis estático como cadenas o xxd, lo que podría provocar acceso no autorizado a funciones del dispositivo o cuentas de usuario. Esta vulnerabilidad se debe al almacenamiento inseguro de información confidencial en el binario del firmware.

18 Jun 2025, 15:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-798

18 Jun 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-18 14:15

Updated : 2025-06-26 15:54


NVD link : CVE-2025-45784

Mitre link : CVE-2025-45784

CVE.ORG link : CVE-2025-45784


JSON object : View

Products Affected

d-link

  • dph-400s_firmware
  • dph-400se_firmware
  • dph-400se
  • dph-400s
CWE
CWE-798

Use of Hard-coded Credentials