Back to Database
Status published
Critical
CVE-2018-10575
An issue was discovered on WatchGuard AP100, AP102, and AP200...
Vulnerability Description
An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15. Hardcoded credentials exist for an unprivileged SSH account with a shell of /bin/false.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-10575
Credits & Attribution
No credits recorded in the NVD database.
References
More from watchguard
View All →CVE-2022-31792
A stored cross-site scripting (XSS) vulnerability exists in the management...
Medium
5.4
CVE-2022-31791
WatchGuard Firebox and XTM appliances allow a local attacker (that...
High
7.8
CVE-2022-31790
WatchGuard Firebox and XTM appliances allow an unauthenticated remote attacker...
High
7.5
CVE-2022-31789
An integer overflow in WatchGuard Firebox and XTM appliances allows...
Critical
9.8
CVE-2022-26318
On WatchGuard Firebox and XTM appliances, an unauthenticated user can...
Unknown
0
Affected Vendor
watchguard
View all reports →Affected Software
ap200 firmware, ap102 firmware, ap100 firmware
Vulnerable Versions:
0
Timeline
Official Publish:
April 30th, 2018
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.