CVE-2018-10968: Critical severity d-link dir-550a firmware vulnerability
Published May 18, 2018
·Updated
On D-Link DIR-550A and DIR-604M devices through v2.10KR, a malicious user can use a default TELNET account to get unauthorized access to vulnerable devices, aka a backdoor access vulnerability.
Affected Software
4 affected components
D-Link Dir-550a Firmware<=2.10kr
Dlink Dir-550a
D-Link Dir-604m Firmware<=2.10kr
Dlink Dir-604m
Event History
May 18, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-10968?
The severity of CVE-2018-10968 is high due to the potential for unauthorized access to vulnerable devices.
2
How do I fix CVE-2018-10968?
To fix CVE-2018-10968, users should disable the default TELNET account and upgrade to firmware versions beyond v2.10KR.
3
Which devices are affected by CVE-2018-10968?
CVE-2018-10968 affects D-Link DIR-550A and DIR-604M devices with firmware versions up to 2.10KR.
4
Can CVE-2018-10968 allow remote access?
Yes, CVE-2018-10968 allows a malicious user to gain unauthorized remote access to the affected devices.
5
What is the exploitation method for CVE-2018-10968?
The exploitation method for CVE-2018-10968 involves using a default TELNET account to access the devices.