Vulnerability Details CVE-2021-46353
An information disclosure in web interface in D-Link DIR-X1860 before 1.03 RevA1 allows a remote unauthenticated attacker to send a specially crafted HTTP request and gain knowledge of different absolute paths that are being used by the web application.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 62.7%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 5.0
Products affected by CVE-2021-46353
-
cpe:2.3:h:dlink:dir-x1860:a1
-
cpe:2.3:o:dlink:dir-x1860_firmware:-
-
cpe:2.3:o:dlink:dir-x1860_firmware:1.03