First published: Tue Dec 25 2018(Updated: )
D-Link DCM-604 DCM604_C1_ViaCabo_1.04_20130606 and DCM-704 EU_DCM-704_1.10 devices allow remote attackers to discover Wi-Fi credentials via iso.3.6.1.4.1.4413.2.2.2.1.5.4.1.14.1.3.32 and iso.3.6.1.4.1.4413.2.2.2.1.5.4.2.4.1.2.32 SNMP requests.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dcm-604 Firmware | =dcm604_c1_viacabo_1.04_20130606 | |
Dlink Dcm-604 | ||
Dlink Dcm-704 Firmware | =eu_dcm-704_1.10 | |
Dlink Dcm-704 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-20445 is considered a moderate severity vulnerability as it allows remote attackers to discover Wi-Fi credentials.
To fix CVE-2018-20445, it is recommended to update the D-Link devices to the latest firmware versions that address this vulnerability.
CVE-2018-20445 affects D-Link DCM-604 with firmware version DCM604_C1_ViaCabo_1.04_20130606 and DCM-704 with firmware version EU_DCM-704_1.10.
CVE-2018-20445 enables remote attackers to use SNMP requests to discover Wi-Fi credentials.
Yes, CVE-2018-20445 has been publicly disclosed and can be exploited over the network without authentication.