CVE-2025-2717

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 25, 2025
Updated: Mar 27, 2025
CWE ID 122
CWE ID 787

Summary

CVE-2025-2717 is a critical vulnerability affecting the D-Link DIR-823X 240126/240802 routers. The issue lies within the function sub_41710C of the /goform/diag_nslookup component in the HTTP POST Request Handler. Manipulation of the argument target_addr enables attackers to inject os commands, potentially leading to remote exploitation. This vulnerability has been disclosed to the public, increasing the risk of potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Adobe Indesign CS
  • Adobe InDesign

Affected Vendors

  • Adobe