Lucene search

K
prionPRIOn knowledge basePRION:CVE-2018-10561
HistoryMay 04, 2018 - 3:29 a.m.

Authentication flaw

2018-05-0403:29:00
PRIOn knowledge base
www.prio-n.com
20

9.7 High

AI Score

Confidence

High

0.971 High

EPSS

Percentile

99.8%

An issue was discovered on Dasan GPON home routers. It is possible to bypass authentication simply by appending β€œ?images” to any URL of the device that requires authentication, as demonstrated by the /menu.html?images/ or /GponForm/diag_FORM?images/ URI. One can then manage the device.