CVE-2018-10110: XSS
Published Apr 18, 2018
·Updated
D-Link DIR-615 T1 devices allow XSS via the Add User feature.
Affected Software
2 affected components
D-Link Dir-615 T1 Firmware=20.07
Dlink Dir-615 T1
Event History
Apr 18, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-10110?
CVE-2018-10110 is classified as a medium severity vulnerability due to its potential for exploitation via XSS.
2
How do I fix CVE-2018-10110?
To mitigate CVE-2018-10110, update the D-Link DIR-615 T1 firmware to the latest version provided by the manufacturer.
3
What type of attack does CVE-2018-10110 involve?
CVE-2018-10110 involves Cross-Site Scripting (XSS) attacks that can exploit the Add User feature on affected devices.
4
Which devices are affected by CVE-2018-10110?
CVE-2018-10110 specifically affects D-Link DIR-615 T1 devices running firmware version 20.07.
5
Can CVE-2018-10110 lead to unauthorized access?
Yes, CVE-2018-10110 can potentially allow attackers to execute malicious scripts in the context of a user's session.