7.5
CVSSv2

CVE-2018-10561

Published: 04/05/2018 Updated: 04/03/2019
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 757
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists on Dasan GPON home routers. It is possible to bypass authentication simply by appending "?images" to any URL of the device that requires authentication, as demonstrated by the /menu.html?images/ or /GponForm/diag_FORM?images/ URI. One can then manage the device.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dasannetworks gpon_router_firmware -

Exploits

#!/bin/bash echo "[+] Sending the Command… " # We send the commands with two modes backtick (`) and semicolon (;) because different models trigger on different devices curl -k -d "XWebPageName=diag&diag_action=ping&wan_conlist=0&dest_host=\`$2\`;$2&ipv=0" $1/GponForm/diag_Form?images/ 2>/dev/null 1>/dev/null echo "[+] Waiti ...

Github Repositories

Exploit for CVE-2018-10562

CVE-2018-10562 CVE-2018-10562 exploit About RCE on GPON home routers [*]CVE-2018-10561:Authentication Bypass [*]CVE-2018-10562: Command Injection Dependencies required requests urllib2 ssl re Screenshots

RCE on GPON home routers (CVE-2018-10561) Press The Hacker News - 1 The Hacker News - 2 KitPloit Security Affairs Vulnerability Many routers today use GPON internet, and a way to bypass all authentication on the devices (CVE-2018-10561) was found by VPNMentor With this authentication bypass, it's also possible to unveil another command injection vulnerability (CVE-2018-1

Exploit for Remote Code Execution on GPON home routers (CVE-2018-10562) written in Python. Initially disclosed by VPNMentor (https://www.vpnmentor.com/blog/critical-vulnerability-gpon-router/), kudos for their work.

RCE on GPON home routers (CVE-2018-10561) Press The Hacker News - 1 The Hacker News - 2 KitPloit Security Affairs Vulnerability Many routers today use GPON internet, and a way to bypass all authentication on the devices (CVE-2018-10561) was found by VPNMentor With this authentication bypass, it's also possible to unveil another command injection vulnerability (CVE-2018-1

RCE on GPON home routers (CVE-2018-10561) Press The Hacker News - 1 The Hacker News - 2 KitPloit Security Affairs Vulnerability Many routers today use GPON internet, and a way to bypass all authentication on the devices (CVE-2018-10561) was found by VPNMentor With this authentication bypass, it's also possible to unveil another command injection vulnerability (CVE-2018-1

RCE on GPON home routers (CVE-2018-10561) Press The Hacker News - 1 The Hacker News - 2 KitPloit Security Affairs Vulnerability Many routers today use GPON internet, and a way to bypass all authentication on the devices (CVE-2018-10561) was found by VPNMentor With this authentication bypass, it's also possible to unveil another command injection vulnerability (CVE-2018-1

These are the IP addresses of the most active C2/Botnets/Zombies/Scanners in European Cyber Space

Malicious IP Addresses These are the IP addresses of the most active Botnets/Zombies/Scanners in European Cyber Space All lists available blacklist_ips_for_fortinet_firewall_aatxt blacklist_ips_for_fortinet_firewall_abtxt botnets_zombies_scanner_spam_ipstxt (full list) botnets_zombies_scanner_spam_ips_ipv6txt (soon !!!) Categories SSH Brute Forcers FortiOS CVE | RCE Exploi