---
id: CVE-2021-42627
title: >-
  The WAN configuration page "wan.htm" on D-Link DIR-615 devices with firmware
  20.06 can be accessed directly without authentication which can lead to
  disclose the information about WAN settings and also leverage attacker to
  modify the dat…
summary: >-
  The WAN configuration page "wan.htm" on D-Link DIR-615 devices with firmware
  20.06 can be accessed directly without authentication which can lead to
  disclose the information about WAN settings and also leverage attacker to
  modify the dat…
severity: critical
cvss: 9.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'
vendor: dlink
product: dir-615_firmware
affected:
  - dir-615_firmware = 20.06
  - dir-615_j1_firmware = 20.06
  - dir-615_t1_firmware = 20.06
  - dir-615jx10_firmware = 20.06
published: '2022-08-23'
updated: '2026-07-05'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2021-42627'
references:
  - url: 'https://github.com/sanjokkarki/D-Link-DIR-615/blob/main/CVE-2021-42627'
    label: cve@mitre.org
  - url: 'https://www.dlink.com/en/security-bulletin/'
    label: cve@mitre.org
  - url: 'http://d-link.com'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'http://dlink.com'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://github.com/sanjokkarki/D-Link-DIR-615/blob/main/CVE-2021-42627'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://www.dlink.com/en/security-bulletin/'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
  - exploit-available
epss: 0.6307
epssPercentile: 0.99176
ingestedAt: '2026-07-06T17:03:24.894Z'
exploits:
  nuclei:
    - CVE-2021-42627
  checkedAt: '2026-09-25T08:20:40.179Z'
exploitAvailable: true
---

## Overview

The WAN configuration page "wan.htm" on D-Link DIR-615 devices with firmware 20.06 can be accessed directly without authentication which can lead to disclose the information about WAN settings and also leverage attacker to modify the data fields of page.

## Affected

- `dir-615_firmware = 20.06`
- `dir-615_j1_firmware = 20.06`
- `dir-615_t1_firmware = 20.06`
- `dir-615jx10_firmware = 20.06`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
