Sploitus

CVE-2018-20114

No indexed exploits for CVE-2018-20114 yet

On D-Link DIR-818LW Rev.A 2.05.B03 and DIR-860L Rev.B 2.03.B03 devices, unauthenticated remote OS command execution can occur in the soap.cgi service of the cgibin binary via an "&&" substring in the service parameter. NOTE: this issue exists because of an incomplete fix for CVE-2018-6530.

Dlink dir-818lw Firmware
= 2.05.b03
CVSS 2.0
10.0 HIGH
CVSS 3.1
9.8 CRITICAL
EPSS
6.7% (93th percentile)
Weakness
CWE-78
NVD status
Modified
Published
2019-01-02
CVE-2018-20114 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2018-20114 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2018-20114 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.