SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2018-10823

An authenticated attacker may execute arbitrary code by injecting the shell command into the chkisg.htm page Sip parameter.

HIGH 8.8EPSS 77.7%

Does this matter?

EPSS puts the probability of exploitation in the next 30 days at 77.7%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.

Description

An issue was discovered on D-Link DWR-116 through 1.06, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-111 through 1.01 devices. An authenticated attacker may execute arbitrary code by injecting the shell command into the chkisg.htm page Sip parameter. This allows for full control over the device internals.

CVSS 3.1
8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
77.70% probability · 100th percentile
CISA KEV
Not listed
Weakness
CWE-78
Affected
dlink/dwr-116 firmware · dlink/dwr-512 firmware · dlink/dwr-912 firmware · dlink/dwr-111 firmware
Source
cve@mitre.org

References

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.