The CaptivelPortal service on D-Link Central WiFiManager CWM-100 1.03 r0098 devices will load a Trojan horse quserex.dll from the CaptivelPortal.exe subdirectory under the D-Link directory, which allows unprivileged local users to gain SYSTEM privileges.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Central_wifimanager | Dlink | 1.03_r0098 (including) | 1.03_r0098 (including) |