CVE-2018-6530 Scanner

Detects 'Remote Code Execution (RCE)' vulnerability in D-Link DIR-880L affects v. DIR-880L_REVA_FIRMWARE_PATCH_1.08B04 and before.


The D-Link DIR-880L is a popular wireless router used in both home and business settings. It provides high-speed wireless internet access and network connectivity to multiple devices, making it an essential tool for those who rely on the internet for work, study, entertainment and communication. The router provides remarkable features such as wireless AC connectivity, dual-band Wi-Fi, and Gigabit Ethernet ports, which makes it easier to manage your network.

However, the router has been found to have a security vulnerability known as CVE-2018-6530. This vulnerability is a command injection vulnerability that exists in soap.cgi (soap_cgi_main in cgibin). It is present in the firmware of D-Link DIR-880L, DIR-868L, DIR-865L, and DIR-860L routers. This vulnerability allows an attacker to execute arbitrary OS commands by sending a request using the service parameter.

If exploited, this vulnerability can lead to complete access to the router by an attacker, allowing them to gain control of the network. An attacker could gain access to private and confidential data, potentially stealing sensitive information such as passwords, banking details, and personal information. Moreover, an attacker could use the router as part of a Botnet to conduct further attacks or steal information from other connected networks.

