VYPR

DSP-W110

by Dlink

CVEs (1)

  • CVE-2025-34125CriJul 16, 2025
    risk 0.69cvss epss 0.75

    An unauthenticated command injection vulnerability exists in the cookie handling process of the lighttpd web server on D-Link DSP-W110A1 firmware version 1.05B01. This occurs when specially crafted cookie values are processed, allowing remote attackers to execute arbitrary…