This vulnerability exists in Digisol DG-GR6821AC Router due to misconfiguration of both Secure and HttpOnly flags on session cookies associated with the router web interface. A remote attacker could exploit this vulnerability by capturing the session cookies transmitted over an unsecure HTTP connection.
Successful exploitation of this vulnerability could allow the attacker to obtain sensitive information from the targeted device.
Metrics
Affected Vendors & Products
References
History
Wed, 16 Jul 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 16 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
Wed, 16 Jul 2025 11:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | This vulnerability exists in Digisol DG-GR6821AC Router due to misconfiguration of both Secure and HttpOnly flags on session cookies associated with the router web interface. A remote attacker could exploit this vulnerability by capturing the session cookies transmitted over an unsecure HTTP connection. Successful exploitation of this vulnerability could allow the attacker to obtain sensitive information from the targeted device. | |
Title | Insecure Cookie Flags Vulnerability in Digisol DG-GR6821AC Router | |
Weaknesses | CWE-1004 CWE-614 |
|
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: CERT-In
Published: 2025-07-16T11:25:05.468Z
Updated: 2025-07-16T18:50:46.637Z
Reserved: 2025-07-09T11:17:31.820Z
Link: CVE-2025-53757

Updated: 2025-07-16T18:50:38.244Z

Status : Awaiting Analysis
Published: 2025-07-16T12:15:30.363
Modified: 2025-07-16T14:58:59.837
Link: CVE-2025-53757

No data.