CVE-2025-22904

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jan 16, 2025
Updated: Jan 17, 2025
CWE ID 120

Summary

CVE-2025-22904 is a newly disclosed vulnerability affecting RE11S v1.11. This issue involves a stack overflow, which can be triggered by maliciously crafted input in the pptpUserName parameter during a call to the setWAN function. Successful exploitation of this vulnerability could lead to unintended application behavior or even a denial-of-service condition, posing a significant risk to affected systems. It is crucial for users of RE11S v1.11 to apply the necessary patch or update as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share