ICS: Delta Electronics CNCSoft-G2 Vulnerability
February 10, 2025SideWinder APT Group aka Rattlesnake – Active IOCs
February 10, 2025ICS: Delta Electronics CNCSoft-G2 Vulnerability
February 10, 2025SideWinder APT Group aka Rattlesnake – Active IOCs
February 10, 2025Severity
Medium
Analysis Summary
CVE-2025-1103
A vulnerability, which was classified as problematic, was found in D-Link DIR-823X 240126/240802. This affects the function set_wifi_blacklists of the file /goform/set_wifi_blacklists of the component HTTP POST Request Handler. The manipulation of the argument macList leads to null pointer dereference. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Impact
- Denial of Service
Indicators of Compromise
CVE
- CVE-2025-1103
Affected Vendors
Affected Products
- D-Link DIR-823X - 240126
- D-Link DIR-823X - 240802
Remediation
Refer to D-Link Website for patch, upgrade, or suggested workaround information.