CVE-2025-2717
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Mar 25, 2025
Updated: Mar 27, 2025
CWE ID 122
CWE ID 787
Summary
CVE-2025-2717 is a critical vulnerability affecting the D-Link DIR-823X 240126/240802 routers. The issue lies within the function sub_41710C of the /goform/diag_nslookup component in the HTTP POST Request Handler. Manipulation of the argument target_addr enables attackers to inject os commands, potentially leading to remote exploitation. This vulnerability has been disclosed to the public, increasing the risk of potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Adobe Indesign CS
- Adobe InDesign
Affected Vendors
- Adobe