CVE-2018-17880: High severity d-link dir-823g firmware vulnerability
Published Oct 3, 2018
·Updated
On D-Link DIR-823G 2018-09-19 devices, the GoAhead configuration allows /HNAP1 RunReboot commands without authentication to trigger a reboot.
Affected Software
2 affected components
D-Link Dir-823g Firmware
Dlink Dir-823g
Event History
Oct 3, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-17880?
CVE-2018-17880 is a vulnerability found in D-Link DIR-823G devices that allows an attacker to trigger a reboot without authentication.
2
How does CVE-2018-17880 impact D-Link DIR-823G devices?
CVE-2018-17880 allows an attacker to execute /HNAP1 RunReboot commands on D-Link DIR-823G devices without authentication, resulting in a reboot.
3
What is the severity of CVE-2018-17880?
CVE-2018-17880 has a severity rating of 7.5 (high).
4
How can I fix CVE-2018-17880?
To fix CVE-2018-17880, D-Link DIR-823G devices should apply the latest firmware update provided by D-Link.
5
Where can I find more information about CVE-2018-17880?
You can find more information about CVE-2018-17880 at the following link: [CVE-2018-17880](https://xz.aliyun.com/t/2834#toc-5).