Directory Traversal vulnerability in D-Link DAP-1650 Firmware v.1.03 allows a local attacker to escalate privileges via the hedwig.cgi component.
The vulnerability exists in the hedwig.cgi component of the D-Link DAP-1650 device. An attacker with local access to the device can exploit improper file path handling (CWE-35 — path traversal) to escape the allowed directory and gain access to system resources outside the intended scope. As a result, privilege escalation to a higher privilege level is possible.
An attacker can gain elevated privileges on the device, which consequently may lead to complete takeover of the router, including configuration modification, network traffic interception, or further lateral movement in the network.
Security patches available from the manufacturer should be applied in accordance with the references (D-Link security announcement SAP10266 available at supportannouncement.us.dlink.com). It is recommended to update the device firmware to a vulnerability-free version as soon as possible.
D-Link DAP-1650 with firmware version 1.03
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HDlink Dap 1650
HWDlinkall versionsDlink Dap 1650 Firmware
OSDlink1.03
Related vulnerabilities
Command injection w D-Link DAP-1650 — nieuwierzytelniony dostęp root
Command injection w D-Link DAP-1650 przez wiadomości UPnP SUBSCRIBE
Buffer overflow w D-Link DAP-1650 — podatność w fileaccess.cgi
Pominięcie uwierzytelniania w D-Link DAP-1650 przez forceful browsing
Command Injection w D-Link DAP-1650 umożliwia zdalne wykonanie poleceń