CVE-2018-10561 KEV EXPLOIT
9.8
CRITICAL · CVSS 3.1 · EPSS 92.9% (pctl 100)
Patch first
On CISA KEV — known exploited in the wild, due 2022-04-21.
Description
An issue was discovered on Dasan GPON home routers. It is possible to bypass authentication simply by appending "?images" to any URL of the device that requires authentication, as demonstrated by the /menu.html?images/ or /GponForm/diag_FORM?images/ URI. One can then manage the device.
Scoring
| CVSS | 9.8 (CRITICAL, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 92.89% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-287 |
| On CISA KEV | yes — remediate by 2022-04-21 |
| Public exploit | yes |
| Published | 2018-05-04 |
| Last modified | 2026-06-17 |
CISA KEV
| Name | Dasan GPON Routers Authentication Bypass Vulnerability |
|---|---|
| Added | 2022-03-31 |
| Due | 2022-04-21 |
| Vendor / product | Dasan / Gigabit Passive Optical Network (GPON) Routers |
| Ransomware use | none reported |
Affected (2)
| Vendor | Product |
|---|---|
| dasannetworks | gpon router |
| dasannetworks | gpon router firmware |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | GPON Routers - Authentication Bypass / Command Injection | 2018-05-03 |
References
- http://www.securityfocus.com/bid/107053
- https://www.exploit-db.com/exploits/44576/
- https://www.vpnmentor.com/blog/critical-vulnerability-gpon-router/
- http://www.securityfocus.com/bid/107053
- https://www.exploit-db.com/exploits/44576/
- https://www.vpnmentor.com/blog/critical-vulnerability-gpon-router/
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-10561
→ the Explorer · watch your stack · NVD