VYPR

DSL/DIR/DNS devices

by Dlink

CVEs (1)

  • CVE-2026-0625CriJan 5, 2026
    risk 0.61cvss epss 0.01

    Multiple D-Link DSL/DIR/DNS devices contain an authentication bypass and improper access control vulnerability in the dnscfg.cgi endpoint that allows an unauthenticated attacker to access DNS configuration functionality. By directly requesting this endpoint, an attacker can…