First published: Sun Oct 31 2021(Updated: )
Several web interfaces in D-Link DIR-868LW 1.12b have no authentication requirements for access, allowing for attackers to obtain users' DNS query history.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
D-link Dir-868lw Firmware | =1.12b | |
Dlink Dir-868lw | ||
All of | ||
D-link Dir-868lw Firmware | =1.12b | |
Dlink Dir-868lw |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-33259 is medium, with a severity value of 5.3.
Attackers can exploit CVE-2021-33259 by accessing several web interfaces in D-Link DIR-868LW 1.12b without any authentication requirements, allowing them to obtain users' DNS query history.
The affected software version of CVE-2021-33259 is D-Link DIR-868LW 1.12b.
Currently, there is no information about specific fixes available for CVE-2021-33259. It is recommended to follow the vendor's website or contact their support for updates.
You can find more information about CVE-2021-33259 on the D-Link official website, dir-868lw.com, or the GitHub repository mentioned in the references.