CVE Database
/

CVE-2014-125117

Back to search

CVE-2014-125117

Published: Jul 25, 2025

Modified: Apr 7, 2026

PUBLISHED

Description

A stack-based buffer overflow vulnerability in the my_cgi.cgi component of certain D-Link devices, including the DSP-W215 version 1.02, can be exploited via a specially crafted HTTP POST request to the /common/info.cgi endpoint. This flaw enables an unauthenticated attacker to achieve remote code execution with system-level privileges.

VendorProductVersions

D-Link

DSP-W215

affected
1.02

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now