Critical severity9.8NVD Advisory· Published Dec 18, 2018· Updated Jun 17, 2026
CVE-2018-17777
CVE-2018-17777
Description
An issue was discovered on D-Link DVA-5592 A1_WI_20180823 devices. If the PIN of the page "/ui/cbpc/login" is the default Parental Control PIN (0000), it is possible to bypass the login form by editing the path of the cookie "sid" generated by the page. The attacker will have access to the router control panel with administrator privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:o:dlink:dva-5592_firmware:a1_wi_20180823:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- www.gubello.me/blog/router-dlink-dva-5592-authentication-bypass/nvdMitigationThird Party Advisory
News mentions
0No linked articles in our index yet.