Vulnerability Description
Improper session management in D-Link Wireless N 300 ADSL2+ Modem Router DSL-124 ME_1.00 allows attackers to execute a session hijacking attack via spoofing the IP address of an authenticated user.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- http://d-link.com
- https://github.com/theShinigami/CVE-Disclosures/tree/main/CVE-2025-71057
- https://www.dlink.com/en/security-bulletin/
FAQ
What is CVE-2025-71057?
CVE-2025-71057 is a vulnerability with a CVSS score of 8.2 (HIGH). Improper session management in D-Link Wireless N 300 ADSL2+ Modem Router DSL-124 ME_1.00 allows attackers to execute a session hijacking attack via spoofing the IP address of an authenticated user.
How severe is CVE-2025-71057?
CVE-2025-71057 has been rated HIGH with a CVSS base score of 8.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-71057?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.