PT-2025-34612 · D Link · Dsl-7740C
Stevenyu113228
·
Published
2025-03-11
·
Updated
2025-08-29
·
CVE-2025-29515
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
D-Link DSL-7740C version DSL7740C.V6.TR069.20211230
Description:
An incorrect access control issue exists in the
DELT file.xgi API endpoint of the D-Link DSL-7740C. This allows attackers to modify arbitrary settings within the device’s XML database, including the administrator’s password.Recommendations:
Apply configuration changes to restrict access to the
DELT file.xgi endpoint.Exploit
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dsl-7740C