CVE-2025-6932 is a problematic vulnerability affecting D-Link DCS-7517 cameras up to version 2.02.0, specifically within the Qlync Password Generation Handler. This flaw involves the use of a hard-coded password, allowing for remote manipulation. Despite being remotely exploitable, the attack complexity and exploitability are rated as high and difficult, respectively, resulting in a low CVSS score of 3.7. While the exploit has been publicly disclosed, there is no evidence of active exploitation, and it has garnered minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.02.0CPE matchmatch criteria | cpe:2.3:o:dlink:dcs-7517_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.3 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.