cbcvebase.
CVE-2018-9032
published 2018-03-27

CVE-2018-9032: An authentication bypass vulnerability on D-Link DIR-850L Wireless AC1200 Dual Band Gigabit Cloud Router (Hardware Version : A1, B1; Firmware Version…

PriorityP273critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EXPLOIT
EPSS
28.76%
97.9th percentile
An authentication bypass vulnerability on D-Link DIR-850L Wireless AC1200 Dual Band Gigabit Cloud Router (Hardware Version : A1, B1; Firmware Version : 1.02-2.06) devices potentially allows attackers to bypass SharePort Web Access Portal by directly visiting /category_view.php or /folder_view.php.

Affected

1 ranges
VendorProductVersion rangeFixed in
dlinkdir-850l_firmware1.02 – 2.06

Detection & IOCsextracted from sources · hover to see the quote

path/category_view.php
path/folder_view.php
  • Monitor for unauthenticated HTTP requests directly to /category_view.php or /folder_view.php on D-Link DIR-850L devices, which indicates an authentication bypass attempt against the SharePort Web Access Portal.
  • Alert on HTTP GET requests to /category_view.php or /folder_view.php originating from external/untrusted sources without a prior authenticated session on the router's web interface.
  • ·Vulnerability affects D-Link DIR-850L Hardware Versions A1 and B1 only, running Firmware Versions 1.02 through 2.06. Devices outside this hardware/firmware range are not affected.
  • ·The bypass specifically targets the SharePort Web Access Portal feature; if SharePort is disabled, the attack surface is reduced.
  • ·Exploitation may allow unauthorized read AND write access to media stored in SharePort, not just read-only access.

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.