VYPR

DSP-W110A1

by Dlink

CVEs (1)

  • CVE-2025-34125CriJul 16, 2025
    risk 0.64cvss epss 0.03

    An unauthenticated command injection vulnerability exists in the cookie handling process of the lighttpd web server on D-Link DSP-W110A1 firmware version 1.05B01. This occurs when specially crafted cookie values are processed, allowing remote attackers to execute arbitrary…