CVE-2021-37315

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/02/2023
Last modified:
26/03/2025

Description

Incorrect Access Control issue discoverd in Cloud Disk in ASUS RT-AC68U router firmware version before 3.0.0.4.386.41634 allows remote attackers to write arbitrary files via improper sanitation on the source for COPY and MOVE operations.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:asus:rt-ac68u_firmware:*:*:*:*:*:*:*:* 3.0.0.4.386.41634 (excluding)
cpe:2.3:h:asus:rt-ac68u:-:*:*:*:*:*:*:*