CVE-2018-10562: Dasan GPON Devices - Remote Code Execution
HoneyLabs honeypots recorded 15 probes matching CVE-2018-10562 from 13 distinct source IP addresses in the last 7 days. Severity is rated critical.
This CVE is on CISA's Known Exploited Vulnerabilities list.
Request paths that identify it
- /GponForm/diag_Form
Addresses probing it
| Source IP | Probes | Network | Country |
|---|---|---|---|
| 202.53.68.18 | 3 | Nettlinx Limited | India |
| 103.26.81.79 | 1 | Cyber Internet Services (Pvt) Ltd. | Pakistan |
| 190.196.253.17 | 1 | MEGALINK S.R.L. | Argentina |
| 119.73.8.2 | 1 | IX Peering for Mobilink and Link Direct International. | Pakistan |
| 190.196.253.116 | 1 | MEGALINK S.R.L. | Argentina |
| 115.56.150.243 | 1 | CHINA UNICOM China169 Backbone | China |
| 103.213.112.141 | 1 | Cyber Internet Services (Pvt) Ltd. | Pakistan |
| 72.255.15.106 | 1 | Cyber Internet Services (Pvt) Ltd. | Pakistan |
Networks it comes from
| ASN | Organisation | Probes | Source IPs |
|---|---|---|---|
| AS9541 | Cyber Internet Services (Pvt) Ltd. | 4 | 4 |
| AS10225 | Nettlinx Limited | 3 | 1 |
| AS266702 | MEGALINK S.R.L. | 2 | 2 |
| AS58470 | IX Peering for Mobilink and Link Direct International. | 1 | 1 |
| AS197170 | TechTies Inc. | 1 | 1 |
| AS142647 | Nasstec Airnet Networks Private Limited | 1 | 1 |
Captured requests
- /GponForm/diag_Form?images/
- /GponForm/diag_Form?style/
HTTP client fingerprints (JA4H)
- po11nn0600_1386cd485c90
- po11nn0500_ac885f862449
- po11nn0600_f8bf768a441b
CVE report
CVE report
Open a specific CVE from the CVE tracker.