Vulnerability Description
An issue was discovered in the Merlin.PHP component 0.6.6 for Asuswrt-Merlin devices. An attacker can execute arbitrary commands because exec.php has a popen call. NOTE: the vendor indicates that Merlin.PHP is designed only for use on a trusted intranet network, and intentionally allows remote code execution
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Asuswrt-Merlin Project | Rt-Ac5300 Firmware | <= 380.70 |
| Asuswrt-Merlin Project | Rt-Ac5300 | - |
| Asuswrt-Merlin Project | Rt Ac1900P Firmware | <= 380.70 |
| Asuswrt-Merlin Project | Rt Ac1900P | - |
| Asuswrt-Merlin Project | Rt-Ac68U Firmware | <= 380.70 |
| Asuswrt-Merlin Project | Rt-Ac68U | - |
| Asuswrt-Merlin Project | Rt-Ac68P Firmware | <= 380.70 |
| Asuswrt-Merlin Project | Rt-Ac68P | - |
| Asuswrt-Merlin Project | Rt-Ac88U Firmware | <= 380.70 |
| Asuswrt-Merlin Project | Rt-Ac88U | - |
| Asuswrt-Merlin Project | Rt-Ac66U B1 Firmware | <= 380.70 |
| Asuswrt-Merlin Project | Rt-Ac66U B1 | - |
| Asuswrt-Merlin Project | Rt-Ac56U Firmware | <= 380.70 |
| Asuswrt-Merlin Project | Rt-Ac56U | - |
| Asuswrt-Merlin Project | Rt-Ac3200 Firmware | <= 380.70 |
| Asuswrt-Merlin Project | Rt-Ac3200 | - |
| Asuswrt-Merlin Project | Rt-Ac68Uf Firmware | <= 380.70 |
| Asuswrt-Merlin Project | Rt-Ac68Uf | - |
| Asuswrt-Merlin Project | Rt-Ac87 Firmware | <= 380.70 |
| Asuswrt-Merlin Project | Rt-Ac87 | - |
References
- http://blog.51cto.com/010bjsoft/2298828ExploitThird Party Advisory
- https://github.com/qoli/Merlin.PHP/issues/26ExploitThird Party Advisory
- http://blog.51cto.com/010bjsoft/2298828ExploitThird Party Advisory
- https://github.com/qoli/Merlin.PHP/issues/26ExploitThird Party Advisory
FAQ
What is CVE-2018-18320?
CVE-2018-18320 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An issue was discovered in the Merlin.PHP component 0.6.6 for Asuswrt-Merlin devices. An attacker can execute arbitrary commands because exec.php has a popen call. NOTE: the vendor indicates that Merl...
How severe is CVE-2018-18320?
CVE-2018-18320 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-18320?
Check the references section above for vendor advisories and patch information. Affected products include: Asuswrt-Merlin Project Rt-Ac5300 Firmware, Asuswrt-Merlin Project Rt-Ac5300, Asuswrt-Merlin Project Rt Ac1900P Firmware, Asuswrt-Merlin Project Rt Ac1900P , Asuswrt-Merlin Project Rt-Ac68U Firmware.