CVE-2018-20675

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
09/01/2019
Last modified:
23/04/2021

Description

D-Link DIR-822 C1 before v3.11B01Beta, DIR-822-US C1 before v3.11B01Beta, DIR-850L A* before v1.21B08Beta, DIR-850L B* before v2.22B03Beta, and DIR-880L A* before v1.20B02Beta devices allow authentication bypass.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dlink:dir-822_firmware:*:*:*:*:*:*:*:* 3.10b06 (including)
cpe:2.3:h:dlink:dir-822:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-822-us_firmware:*:*:*:*:*:*:*:* 3.10b06 (including)
cpe:2.3:h:dlink:dir-822-us:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-850l_firmware:*:*:*:*:*:*:*:* 1.21b07 (including)
cpe:2.3:h:dlink:dir-850l:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-850l_firmware:*:*:*:*:*:*:*:* 2.21b01 (including)
cpe:2.3:o:dlink:dir-850l_firmware:2.22b02:beta:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-850l:-:*:*:*:*:*:*:*
cpe:2.3:o:dlink:dir-880l_firmware:*:*:*:*:*:*:*:* 1.07.b08 (including)
cpe:2.3:o:dlink:dir-880l_firmware:1.20b01:beta:*:*:*:*:*:*
cpe:2.3:h:dlink:dir-880l:-:*:*:*:*:*:*:*