CVE-2018-18007: Critical severity d-link dsl-2770l firmware vulnerability
Published Dec 21, 2018
·Updated
atbox.htm on D-Link DSL-2770L devices allows remote unauthenticated attackers to discover admin credentials.
Affected Software
4 affected components
Dlink Dsl-2770l Firmware=me_1.01
Dlink Dsl-2770l Firmware=me_1.02
Dlink Dsl-2770l Firmware=me_1.06
Dlink Dsl-2770l
Event History
Dec 21, 2018
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-18007?
CVE-2018-18007 has a high severity rating due to its potential for remote unauthenticated access to admin credentials.
2
How do I fix CVE-2018-18007?
To fix CVE-2018-18007, upgrade the D-Link DSL-2770L firmware to the latest version that addresses this vulnerability.
3
What devices are affected by CVE-2018-18007?
CVE-2018-18007 affects D-Link DSL-2770L devices running firmware versions ME_1.01, ME_1.02, and ME_1.06.
4
What type of vulnerability is CVE-2018-18007?
CVE-2018-18007 is classified as a remote unauthenticated credential disclosure vulnerability.
5
Can CVE-2018-18007 be exploited locally?
CVE-2018-18007 cannot be exploited locally as it allows remote unauthenticated attackers to exploit the vulnerability.