107053vdb entry
http://www.securityfocus.com/bid/107053 CVE-2018-10561
CRITICALCISA KEVRansomware
Dasan GPON Routers Authentication Bypass Vulnerability
Record summary
CVE-2018-10561 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit. CISA lists CVE-2018-10561 in KEV; VulnCheck reports CVE-2018-10561 use in known ransomware campaigns.
Description
An issue was discovered on Dasan GPON home routers. It is possible to bypass authentication simply by appending "?images" to any URL of the device that requires authentication, as demonstrated by the /menu.html?images/ or /GponForm/diag_FORM?images/ URI. One can then manage the device.
Description source: CVE List
Exploitation context
Known exploitation
- CISA KEV
- Listed · Mar 31, 2022 · CISA
- VulnCheck KEV
- Listed · May 7, 2018 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
- Ransomware use
- Observed · VulnCheck
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationActive
AutomatableYes
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Feb 3, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Gigabit Passive Optical Network (GPON) RoutersBrowse Dasan / Gigabit Passive Optical Network (GPON) Routers | CISA | Version data not supplied | |
Proofs of concept
1Catalogued exploits
ExploitDBGPON Routers - Authentication Bypass / Command InjectionExploitDB exploitby vpnmentorNot analyzed1 file
References
5nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-10561 cisa.govGovernment resource
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-10561 44576exploit
https://www.exploit-db.com/exploits/44576 vpnmentor.com
https://www.vpnmentor.com/blog/critical-vulnerability-gpon-router