Skip to content
COOEY

EXPOSURES › CVE-2021-42627

CVE-2021-42627

CRITICAL
DETAIL
SourceNVD · cve Published2022-08-23 CVSS9.8 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2021-42627 ↗
SHAME 35/100

The WAN configuration page "wan.htm" on D-Link DIR-615 devices with firmware 20.06 can be accessed directly without authentication which can lead to disclose the information about WAN settings and also leverage attacker to modify the data fields of page.

▸ RECOMMENDED ACTION  Critical severity — schedule patching of the affected products.

DESCRIPTION

The WAN configuration page "wan.htm" on D-Link DIR-615 devices with firmware 20.06 can be accessed directly without authentication which can lead to disclose the information about WAN settings and also leverage attacker to modify the data fields of page.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.