CVE-2018-6527: XSS
XSS vulnerability in htdocs/webinc/js/advparentctrlmap.php in D-Link DIR-868L DIR868LA1FW112b04 and previous versions, DIR-865L DIR-865LREVAFIRMWAREPATCH1.08.B01 and previous versions, and DIR-860L DIR860LA1FW110b04 and previous versions allows remote attackers to read a cookie via a crafted deviceid parameter to soap.cgi.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
D-Link DIR-868L / DIR868LA1_FW112b04to a version that resolves this vulnerability.Fixed in DIR868LA1_FW112b04 - Upgrade
Upgrade
D-Link DIR-865L / DIR-865L_REVA_FIRMWARE_PATCH_1.08.B01to a version that resolves this vulnerability.Fixed in DIR-865L_REVA_FIRMWARE_PATCH_1.08.B01 - Upgrade
Upgrade
D-Link DIR-860L / DIR860LA1_FW110b04to a version that resolves this vulnerability.Fixed in DIR860LA1_FW110b04 - Compensating control
Restrict access to soap.cgi (and thus the soap.cgi endpoint reachable via the crafted deviceid parameter) to trusted clients only, e.g., via network ACL/firewall rules.
Event History
Frequently Asked Questions
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2018-6527.
What is the severity of CVE-2018-6527?
The severity of CVE-2018-6527 is medium with a CVSS score of 6.1.
Which D-Link routers are affected by CVE-2018-6527?
The D-Link routers affected by CVE-2018-6527 are DIR-868L, DIR-865L, and DIR-860L.
How can remote attackers exploit this vulnerability?
Remote attackers can exploit this vulnerability to read a cookie via a crafted request.
Is there a fix available for CVE-2018-6527?
Please refer to the vendor's website or security advisory for information on available fixes for CVE-2018-6527.