CVE-2018-12103
Last modified
CVE-2018-12103 is a vulnerability of currently unknown severity. An issue was discovered on D-Link DIR-890L with firmware 1.21B02beta01 and earlier, DIR-885L/R with firmware 1.21B03beta01 and earlier, and DIR-895L/R with firmware 1.21B04beta04 and earlier devices (all hardware revisions). Due to the predictability of the /docs/captcha_(number).jpeg URI, being local to the network, but unauthenticated to the administrator's panel, an attacker can disclose the CAPTCHAs used by the access point and can elect to load the CAPTCHA of their choosing, leading to unauthorized login attempts to the access point.. EPSS estimates a 0.45% chance of exploitation in the next 30 days.
Description
An issue was discovered on D-Link DIR-890L with firmware 1.21B02beta01 and earlier, DIR-885L/R with firmware 1.21B03beta01 and earlier, and DIR-895L/R with firmware 1.21B04beta04 and earlier devices (all hardware revisions). Due to the predictability of the /docs/captcha_(number).jpeg URI, being local to the network, but unauthenticated to the administrator's panel, an attacker can disclose the CAPTCHAs used by the access point and can elect to load the CAPTCHA of their choosing, leading to unauthorized login attempts to the access point.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Dlink | Dir-890l Firmware | <= 1.21b02beta01 |
| D-Link | Dir-885l\/R Firmware | <= 1.21b03beta01 |
| D-Link | Dir-895l\/R Firmware | <= 1.21b04beta01 |
References
- http://seclists.org/fulldisclosure/2018/Jul/13Mailing List, Third Party Advisory
- http://seclists.org/fulldisclosure/2018/Jul/13Mailing List, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-12103?
How severe is CVE-2018-12103?
How do I fix CVE-2018-12103?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2018
- CVE-2018-12098The liblnk_data_block_read function in liblnk_data_block.c i…
- CVE-2018-12099Grafana before 5.2.0-beta1 has XSS vulnerabilities in dashbo…
- CVE-2018-1210Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2018-12100Sonatype Nexus Repository Manager versions 3.x before 3.12.0…
- CVE-2018-12101CMS Clipper 1.3.3 has XSS in the Security tab search, User G…
- CVE-2018-12102md4c 0.2.6 has a NULL pointer dereference in the function md…
- CVE-2018-12104Cross-site scripting (XSS) vulnerability in Airbnb Knowledge…
- CVE-2018-12108An issue was discovered in Dropbox Lepton 1.2.1. The validat…
- CVE-2018-12109An issue was discovered in Free Lossless Image Format (FLIF)…
- CVE-2018-1211Dell EMC iDRAC7/iDRAC8, versions prior to 2.52.52.52, contai…
- CVE-2018-12110portfolioCMS 1.0.5 has SQL Injection via the admin/portfolio…
- CVE-2018-12111Cross-site scripting (XSS) vulnerability in the Canon PrintM…
Are you affected by CVE-2018-12103?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
