Nokia · Nokia C7 · CVE-2025-65885
**Name of the Vulnerable Software and Affected Versions**
Delight Custom Firmware versions 1.0 through 1.8
**Description**
A flaw exists in Delight Custom Firmware for Nokia Symbian Belle devices that allows local attackers to inject startup scripts. This is achieved by placing crafted `.txt` files into the `:Data` directory. The affected devices include Nokia 808, Nokia N8, Nokia E7, Nokia C7, Nokia 700, Nokia 701, Nokia 603, Nokia 500, Nokia E6, Nokia Oro, and Vertu Constellation T.
**Recommendations**
Delight Custom Firmware version 1.0: Avoid placing untrusted `.txt` files in the `:Data` directory.
Delight Custom Firmware version 1.1: Avoid placing untrusted `.txt` files in the `:Data` directory.
Delight Custom Firmware version 1.2: Avoid placing untrusted `.txt` files in the `:Data` directory.
Delight Custom Firmware version 1.3: Avoid placing untrusted `.txt` files in the `:Data` directory.
Delight Custom Firmware version 1.8: Avoid placing untrusted `.txt` files in the `:Data` directory.
Delight Custom Firmware version 6.7: Avoid placing untrusted `.txt` files in the `:Data` directory.