PT-2018-4007 · D Link · D-Link Dir-860L+2

·

CVE-2018-6528

·

Published

2018-01-13

·

Updated

2023-11-08

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions D-Link DIR-860L versions prior to DIR860LA1 FW110b04 D-Link DIR-865L versions prior to DIR-865L REVA FIRMWARE PATCH 1.08.B01 D-Link DIR-868L versions prior to DIR868LA1 FW112b04
Description The issue is related to improper input validation in the htdocs/webinc/body/bsc sms send.php script of D-Link router software. This can be exploited by a remote attacker to conduct an XSS attack via a specially crafted parameter for soap.cgi, potentially allowing the attacker to read cookies.
Recommendations For D-Link DIR-860L versions prior to DIR860LA1 FW110b04, update to a version newer than DIR860LA1 FW110b04. For D-Link DIR-865L versions prior to DIR-865L REVA FIRMWARE PATCH 1.08.B01, update to a version newer than DIR-865L REVA FIRMWARE PATCH 1.08.B01. For D-Link DIR-868L versions prior to DIR868LA1 FW112b04, update to a version newer than DIR868LA1 FW112b04. As a temporary workaround, consider restricting access to the soap.cgi endpoint and the receiver parameter to minimize the risk of exploitation.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-09631
CVE-2018-6528

Affected Products

D-Link Dir-860L
D-Link Dir-865L
D-Link Dir-868L