nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2025-53757 CVE-2025-53757
HIGH
Insecure Cookie Flags Vulnerability in Digisol DG-GR6821AC Router
Record summary
CVE-2025-53757 has a selected CVSS score of 8.7 (high).
Description
This vulnerability exists in Digisol DG-GR6821AC Router due to misconfiguration of both Secure and HttpOnly flags on session cookies associated with the router web interface. A remote attacker could exploit this vulnerability by capturing the session cookies transmitted over an unsecure HTTP connection. Successful exploitation of this vulnerability could allow the attacker to obtain sensitive information from the targeted device.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 16, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
XPON ONU Wi-Fi Router (DG-GR6821AC)Browse Digisol / XPON ONU Wi-Fi Router (DG-GR6821AC)Default status: unaffected | CVE List | V3.2.XX | affected |
References
2cert-in.org.inThird-party advisory
https://www.cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES01&VLCODE=CIVN-2025-0147