CVE-2018-13317
40Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 1.0%
from disclosure to weapon
Published on NVDNov 26
VulnCheck+2576d
exploitation probability
1.0%top 40% of all CVEs
observed exploitation
yesVulnCheck
Password disclosure in password.htm in TOTOLINK A3002RU version 1.0.8 allows attackers to obtain the plaintext password for the admin user by making a GET request for password.htm.
Affected products
n/a · n/a