ZeroHour

CVE-2018-15515

PoC ×2
CVSS 3.0
7.8 high
EPSS
2%p76
Published
()
Modified
Description

The CaptivelPortal service on D-Link Central WiFiManager CWM-100 1.03 r0098 devices will load a Trojan horse "quserex.dll" from the CaptivelPortal.exe subdirectory under the D-Link directory, which allows unprivileged local users to gain SYSTEM privileges.

Vendors
dlink
Products
central wifimanager
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.