Record summary

CVE-2018-8898 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.

Description

A flaw in the authentication mechanism in the Login Panel of router D-Link DSL-3782 (A1_WI_20170303 || SWVer="V100R001B012" FWVer="3.10.0.24" FirmVer="TT_77616E6771696F6E67") allows unauthenticated attackers to perform arbitrary modification (read, write) to passwords and configurations meanwhile an administrator is logged into the web panel.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBD-Link DSL-3782 - Authentication BypassExploitDB exploitby Giulio ComiNot analyzed1 file
ExploitDB

PoC details

References

3