CVE Feed

    Dashboard / CVE / CVE-2018-19987

    CVE-2018-19987

    D-Link DIR-822 Rev.B 202KRb06, DIR-822 Rev.C 3.10B06, DIR-860L Rev.B 2.03.B03, DIR-868L Rev.B 2.05B02, DIR-880L Rev.A 1.20B01_01_i3se_BETA, and DIR-890L Rev.A 1.21B02_BETA devices mishandle IsAccessPoint in /HNAP1/SetAccessPointMode. In the SetAccessPointMode.php source code, the IsAccessPoint parameter is saved in the ShellPath script file without any regex checking. After the script file is executed, the command injection occurs. A vulnerable /HNAP1/SetAccessPointMode XML message could have shell metacharacters in the IsAccessPoint element such as the `telnetd` string.

    Published:May 13, 2019
    Last Modified:Nov 21, 2024
    EPS:May 13, 2019
    EPSS Score:0.81826
    CVSS Score:9.8

    Affected Products

    Vendor
    D-link
    Product
    Dir-818lw Firmware
    Vendor
    D-link
    Product
    Dir-822 Firmware
    Vendor
    D-link
    Product
    Dir-860l Firmware
    Vendor
    D-link
    Product
    Dir-868l Firmware
    Vendor
    D-link
    Product
    Dir-880l Firmware
    Vendor
    D-link
    Product
    Dir-890l\/r Firmware
    Vendor
    Dlink
    Product
    Dir-818lw
    Vendor
    Dlink
    Product
    Dir-822
    Vendor
    Dlink
    Product
    Dir-822 Firmware
    Vendor
    Dlink
    Product
    Dir-860l
    Vendor
    Dlink
    Product
    Dir-868l
    Vendor
    Dlink
    Product
    Dir-880l
    Vendor
    Dlink
    Product
    Dir-890l\/r

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High