cbcvebase.
CVE-2025-29515
published 2025-08-25

CVE-2025-29515: Incorrect access control in the DELT_file.xgi endpoint of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to modify arbitrary…

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
Incorrect access control in the DELT_file.xgi endpoint of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to modify arbitrary settings within the device's XML database, including the administrator’s password.

Affected

1 ranges
VendorProductVersion rangeFixed in
dlinkdsl-7740c_firmware