Vulnerability Description
A command injection vulnerability in D-Link DIR-823X 240126 and 240802 allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /goform/set_prohibiting via the corresponding function, triggering remote command execution.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dlink | Dir-823X Firmware | 240126 |
| Dlink | Dir-823X | - |
Related Weaknesses (CWE)
References
- https://github.com/mono7s/Dir-823x/blob/main/set_prohibiting/set_prohibiting.mdExploitThird Party AdvisoryBroken Link
- https://www.akamai.com/blog/security-research/2026/apr/cve-2025-29635-mirai-campExploitThird Party Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-US Government Resource
FAQ
What is CVE-2025-29635?
CVE-2025-29635 is a vulnerability with a CVSS score of 7.2 (HIGH). A command injection vulnerability in D-Link DIR-823X 240126 and 240802 allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /goform/set_prohibitin...
How severe is CVE-2025-29635?
CVE-2025-29635 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-29635?
Check the references section above for vendor advisories and patch information. Affected products include: Dlink Dir-823X Firmware, Dlink Dir-823X.