Medium severity5.4NVD Advisory· Published Dec 28, 2018· Updated Jun 17, 2026
CVE-2018-20576
CVE-2018-20576
Description
Orange Livebox 00.96.320S devices allow cgi-bin/autodialing.exe and cgi-bin/phone_test.exe CSRF, leading to arbitrary outbound telephone calls to an attacker-specified telephone number. This is related to Firmware 01.11.2017-11:43:44, Boot v0.70.03, Modem 5.4.1.10.1.1A, Hardware 02, and Arcadyan ARV7519RW22-A-L T VR9 1.2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:orange:arv7519rw22_livebox_2.1_firmware:00.96.320s:*:*:*:*:*:*:*
- Range: 1.2
Patches
Vulnerability mechanics
References
1- gbhackers.com/orange-adsl-modems/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.