HIGH

CVE-2018-19537

CVSS v3

7.2

HIGH

EPSS Score

19.6%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

TP-Link Archer C5 devices through V2_160201_US allow remote command execution via shell metacharacters on the wan_dyn_hostname line of a configuration file that is encrypted with the 478DA50BF9E3D2CF key and uploaded through the web GUI by using the web admin account. The default password of admin may be used in some cases.

Technical details

Published
11/26/2018

Frequently asked questions

What is CVE-2018-19537?

TP-Link Archer C5 devices through V2_160201_US allow remote command execution via shell metacharacters on the wan_dyn_hostname line of a configuration file that is encrypted with the 478DA50BF9E3D2CF key and uploaded through the web GUI by using the web admin account. The default password of admin may be used in some cases.

Is CVE-2018-19537 actively exploited?

Active exploitation of CVE-2018-19537 has not been confirmed. The EPSS score is 19.6%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2018-19537?

CVE-2018-19537 has a CVSS v3 base score of 7.2 (HIGH severity).

Is CVE-2018-19537 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.