CVE-2018-18007: D-Link DSL-2770l Firmware

Critical severity, CVSS 9.8. EPSS: 1.9% chance of exploitation in the next 30 days.

atbox.htm on D-Link DSL-2770L devices allows remote unauthenticated attackers to discover admin credentials.

Affected products

  • D-Link DSL-2770l Firmware: version me_1.01 only; version me_1.02 only; version me_1.06 only

Published 2018-12-21. Last modified 2026-06-17.