← back
CVE-2018-13317observed exploitation

CVE-2018-13317

40Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 1.0%
from disclosure to weapon
Published on NVDNov 26
VulnCheck+2576d
exploitation probability
1.0%top 40% of all CVEs
observed exploitation
yesVulnCheck
Password disclosure in password.htm in TOTOLINK A3002RU version 1.0.8 allows attackers to obtain the plaintext password for the admin user by making a GET request for password.htm.
Affected products
n/a · n/a