PT-2018-3063 · D Link · D-Link Central Wifi Manager Cwm

Published

2018-11-20

·

Updated

2023-02-28

·

CVE-2019-13372

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions D-Link Central WiFi Manager CWM(100) versions prior to v1.03R0100 BETA6
Description The issue is related to a flaw in the authentication procedure of the D-Link Central WiFi Manager CWM(100). This flaw allows remote attackers to execute arbitrary PHP code via a cookie, as the username field in the cookie is vulnerable to eval injection. Furthermore, an empty password can bypass authentication, exacerbating the issue.
Recommendations For versions prior to v1.03R0100 BETA6, update to version v1.03R0100 BETA6 or later to resolve the issue. As a temporary workaround, consider restricting access to the /web/Lib/Action/IndexAction.class.php component to minimize the risk of exploitation. Avoid using empty passwords and ensure that the username field in cookies is properly sanitized to prevent eval injection until the issue is resolved.

Exploit

Fix

Improper Authentication

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2019-03552
CVE-2019-13372

Affected Products

D-Link Central Wifi Manager Cwm