Incorrect access control in the Maintenance module of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows authenticated attackers with low-level privileges to arbitrarily change the high-privileged account passwords and escalate privileges.
Metrics
Affected Vendors & Products
References
History
Tue, 26 Aug 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-284 | |
Metrics |
cvssV3_1
|
Mon, 25 Aug 2025 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
D-link
D-link dsl-7740c |
|
Vendors & Products |
D-link
D-link dsl-7740c |
Mon, 25 Aug 2025 14:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Incorrect access control in the Maintenance module of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows authenticated attackers with low-level privileges to arbitrarily change the high-privileged account passwords and escalate privileges. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-08-26T16:02:10.244Z
Reserved: 2025-03-11T00:00:00.000Z
Link: CVE-2025-29520

Updated: 2025-08-26T16:02:04.696Z

Status : Awaiting Analysis
Published: 2025-08-25T15:15:38.103
Modified: 2025-08-26T16:15:33.833
Link: CVE-2025-29520

No data.