← back
CVE-2018-10577

CVE-2018-10577

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 6.6%
from disclosure to weapon135 days
Published on NVDMay 2
1st PoC+135d
exploitation probability
6.6%top 7% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15, and AP300 devices with firmware before 2.0.0.10. File upload functionality allows any users authenticated on the web interface to upload files containing code to the web root, allowing these files to be executed as root.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.