CVE-2018-19300

Severity
9.8CRITICAL
EPSS
23.3%
top 4.04%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 11
Latest updateMay 14

Description

On D-Link DAP-1530 (A1) before firmware version 1.06b01, DAP-1610 (A1) before firmware version 1.06b01, DWR-111 (A1) before firmware version 1.02v02, DWR-116 (A1) before firmware version 1.06b03, DWR-512 (B1) before firmware version 2.02b01, DWR-711 (A1) through firmware version 1.11, DWR-712 (B1) before firmware version 2.04b01, DWR-921 (A1) before firmware version 1.02b01, and DWR-921 (B1) before firmware version 2.03b01, there exists an EXCU_SHELL file in the web directory. By sending a GET r

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages9 packages

🔴Vulnerability Details

2
GHSA
GHSA-92r9-fc2f-whhm: On D-Link DAP-1530 (A1) before firmware version 12022-05-14
CVEList
CVE-2018-19300: On D-Link DAP-1530 (A1) before firmware version 12019-04-11
CVE-2018-19300 (CRITICAL CVSS 9.8) | On D-Link DAP-1530 (A1) before firm | cvebase.io