First published: Fri Feb 03 2023(Updated: )
Incorrect Access Control issue discoverd in Cloud Disk in ASUS RT-AC68U router firmware version before 3.0.0.4.386.41634 allows remote attackers to write arbitrary files via improper sanitation on the source for COPY and MOVE operations.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ASUS RT-AC68U Firmware | <3.0.0.4.386.41634 | |
ASUS RT-AC68U |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2021-37315.
The severity of CVE-2021-37315 is critical with a CVSS score of 9.1.
The affected software is ASUS RT-AC68U router firmware version before 3.0.0.4.386.41634.
CVE-2021-37315 allows remote attackers to write arbitrary files in the Cloud Disk of ASUS RT-AC68U router firmware via improper sanitation on the source for COPY and MOVE operations.
Yes, updating the ASUS RT-AC68U router firmware to version 3.0.0.4.386.41634 or later will fix CVE-2021-37315.