๐Ÿ” CVE Alert

CVE-2025-71058

CRITICAL 9.1
CVSS Score
9.1
EPSS Score
0.1%
EPSS Percentile
17th

Dual DHCP DNS Server 8.01 improperly accepts and caches UDP DNS responses without validating that the response originates from a legitimate configured upstream DNS server. The implementation matches responses primarily by TXID and inserts results into the cache, enabling a remote attacker to inject forged responses and poison the DNS cache, potentially redirecting victims to attacker-controlled destinations.

Vendor n/a
Product n/a
Published Apr 7, 2026
Last Updated Apr 9, 2026
Stay Ahead of the Next One

Get instant alerts for n/a n/a

Be the first to know when new critical vulnerabilities affecting n/a n/a are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

n/a / n/a
n/a

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
sourceforge.net: https://sourceforge.net/projects/dhcp-dns-server/ github.com: https://github.com/FPokerFace/Security-Advisory/tree/main/CVE-2025-71058