First published: Tue Oct 09 2018(Updated: )
An issue was discovered on D-Link DIR-809 A1 through 1.09, A2 through 1.11, and Guest Zone through 1.09 devices. Device passwords, such as the admin password and the WPA key, are stored in cleartext.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
D-Link DIR-809 guestzone firmware | <=1.09 | |
D-Link DIR-809 guestzone firmware | <=1.11 | |
D-Link DIR-809 Guestzone Firmware | <=1.09 | |
dlink DIR-809 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-14081 is considered high due to the exposure of sensitive credentials in cleartext.
To fix CVE-2018-14081, update the firmware of the D-Link DIR-809 device to the latest version provided by the manufacturer.
CVE-2018-14081 affects D-Link DIR-809 A1 versions up to 1.09, A2 versions up to 1.11, and Guest Zone versions up to 1.09.
The cleartext password storage in CVE-2018-14081 can lead to unauthorized access to the device and its network.
The potential consequences of CVE-2018-14081 include compromised device security, data breaches, and unauthorized network access.