CVE-2021-46353: Medium severity d-link dir-x1860 firmware vulnerability
Published Mar 4, 2022
·Updated
An information disclosure in web interface in D-Link DIR-X1860 before 1.03 RevA1 allows a remote unauthenticated attacker to send a specially crafted HTTP request and gain knowledge of different absolute paths that are being used by the web application.
Affected Software
2 affected components
Dlink Dir-x1860 Firmware<=1.03
Dlink Dir-x1860=a1
Remediation
Event History
Mar 4, 2022
CVE Published
via MITRE·09:13 PM
Data Sourced
via MITRE·09:13 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-46353?
CVE-2021-46353 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2021-46353?
To fix CVE-2021-46353, you should update the D-Link DIR-X1860 firmware to version 1.03 RevA1 or later.
3
What does CVE-2021-46353 affect?
CVE-2021-46353 affects the D-Link DIR-X1860 router firmware versions prior to 1.03.
4
Can CVE-2021-46353 be exploited remotely?
Yes, CVE-2021-46353 can be exploited by a remote unauthenticated attacker using specially crafted HTTP requests.
5
What kind of information can be disclosed by CVE-2021-46353?
CVE-2021-46353 allows the attacker to gain knowledge of different absolute paths used by the web application.