CVE-2018-13108 EXPLOIT
7.8
HIGH · CVSS 3.0 · EPSS 1.6% (pctl 75)
Patch early
A public exploit exists.
Description
All ADB broadband gateways / routers based on the Epicentro platform are affected by a local root jailbreak vulnerability where attackers are able to gain root access on the device, and extract further information such as sensitive configuration data of the ISP (e.g., VoIP credentials) or attack the internal network of the ISP.
Scoring
| CVSS | 7.8 (HIGH, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 1.58% — more likely to be exploited than 75% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2018-07-06 |
| Last modified | 2026-06-17 |
Affected (8)
| Vendor | Product |
|---|---|
| adbglobal | dv2210 |
| adbglobal | dv2210 firmware |
| adbglobal | prg av4202n |
| adbglobal | prg av4202n firmware |
| adbglobal | vv2220 |
| adbglobal | vv2220 firmware |
| adbglobal | vv5522 |
| adbglobal | vv5522 firmware |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | ADB Broadband Gateways / Routers - Local Root Jailbreak | 2018-07-05 |
References
- http://packetstormsecurity.com/files/148424/ADB-Local-Root-Jailbreak.html
- http://seclists.org/fulldisclosure/2018/Jul/17
- http://www.securityfocus.com/archive/1/542117/100/0/threaded
- https://www.exploit-db.com/exploits/44983/
- https://www.sec-consult.com/en/blog/advisories/local-root-jailbreak-via-network-file-sharing-flaw-in-all-adb-broadband-gateways-routers/
- http://packetstormsecurity.com/files/148424/ADB-Local-Root-Jailbreak.html
- http://seclists.org/fulldisclosure/2018/Jul/17
- http://www.securityfocus.com/archive/1/542117/100/0/threaded
- https://www.exploit-db.com/exploits/44983/
- https://www.sec-consult.com/en/blog/advisories/local-root-jailbreak-via-network-file-sharing-flaw-in-all-adb-broadband-gateways-routers/
→ the Explorer · watch your stack · NVD