Description
D-Link routers with the mydlink feature have some web interfaces without authentication requirements. An attacker can remotely obtain users' DNS query logs and login logs. Vulnerable targets include but are not limited to the latest firmware versions of DIR-817LW (A1-1.04), DIR-816L (B1-2.06), DIR-816 (B1-2.06?), DIR-850L (A1-1.09), and DIR-868L (A1-1.10).
Published: 2019-03-25
Score: 7.5 High
EPSS: 10.9% Moderate
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

No history.

Subscriptions

Dlink Dir-816 Dir-816 Firmware Dir-816l Dir-816l Firmware Dir-817lw Dir-817lw Firmware Dir-850l Dir-850l Firmware Dir-868l Dir-868l Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T20:54:27.952Z

Reserved: 2019-02-08T00:00:00.000Z

Link: CVE-2019-7642

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-03-25T22:29:00.810

Modified: 2024-11-21T04:48:27.040

Link: CVE-2019-7642

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses