Junglewise Threat Intelligence

CVE-2026-52533: D-Link DIR-1253 privilege escalation in /etc/shadow

CVE-2026-52533 · Severity: info · CVSS 0 · Published 2026-07-13

Vendors: D-Link.

Executive brief

A security vulnerability has been identified in the D-Link DIR-1253 router, a device used to provide wireless internet connectivity. An attacker with existing access to the device could exploit a flaw in how system password files are handled to gain higher-level administrative privileges. This could allow an unauthorized user to take full control of the router, potentially leading to intercepted traffic or further network compromise.

Technical details

A privilege escalation vulnerability exists in D-Link DIR-1253 firmware version 1.0.1.250923.142435. The flaw resides in the handling of the /etc/shadow component file, which stores encrypted user passwords. An attacker with low-privileged access to the device's operating system can leverage improper permissions or insecure handling of this file to escalate their privileges to root. While the advisory lists the severity as 'info', privilege escalation via sensitive system files typically warrants a higher rating. No official patch has been confirmed in the provided documentation, though users are advised to monitor D-Link's security bulletin page.

Affected products

  • D-Link DIR-1253 1.0.1.250923.142435

Timeline

  • 2026-07-13: advisory: NVD publication date

References