cbcvebase.
CVE-2018-18009
published 2018-12-21

CVE-2018-18009: dirary0.js on D-Link DIR-140L, DIR-640L devices allows remote unauthenticated attackers to discover admin credentials.

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
dirary0.js on D-Link DIR-140L, DIR-640L devices allows remote unauthenticated attackers to discover admin credentials.

Affected

2 ranges
VendorProductVersion rangeFixed in
dlinkdir-140l_firmware
dlinkdir-640l_firmware