CVE-2025-29515
Incorrect access control in the DELT_file.xgi endpoint of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to modify arbitrary settings within the device’s XML database, including the administrator’s password.
More information : https://gist.github.com/stevenyu113228/0bf32385245f71dfe11b0ef77c468392