sprintf of the file /ddns.asp?opt=add of the component jhttpd. The manipulation of the argument mx leads to stack-based buffer overflow.This vulnerability is known as CVE-2025-7908. The attack can be launched remotely. Furthermore, there is an exploit available.