Filtered by vendor D-link
Subscriptions
Filtered by product Dsl-7740c
Subscriptions
Total
7 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2025-29517 | 1 D-link | 1 Dsl-7740c | 2025-08-26 | 6.8 Medium |
D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability via the traceroute6 function. | ||||
CVE-2025-29520 | 1 D-link | 1 Dsl-7740c | 2025-08-26 | 5.3 Medium |
Incorrect access control in the Maintenance module of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows authenticated attackers with low-level privileges to arbitrarily change the high-privileged account passwords and escalate privileges. | ||||
CVE-2025-29519 | 1 D-link | 1 Dsl-7740c | 2025-08-26 | 5.3 Medium |
A command injection vulnerability in the EXE parameter of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to execute arbitrary commands via supplying a crafted GET request. | ||||
CVE-2025-29515 | 1 D-link | 1 Dsl-7740c | 2025-08-25 | 9.8 Critical |
Incorrect access control in the DELT_file.xgi endpoint of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to modify arbitrary settings within the device's XML database, including the administrator’s password. | ||||
CVE-2025-29514 | 1 D-link | 1 Dsl-7740c | 2025-08-25 | 9.8 Critical |
Incorrect access control in the config.xgi function of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to download the configuration file via providing a crafted web request. | ||||
CVE-2025-29516 | 1 D-link | 1 Dsl-7740c | 2025-08-25 | 7.2 High |
D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability via the backup function. | ||||
CVE-2025-29523 | 1 D-link | 1 Dsl-7740c | 2025-08-25 | 7.2 High |
D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 was discovered to contain a command injection vulnerability via the ping6 function. |
Page 1 of 1.