D-Link routers with the mydlink feature have some web interfaces without authentication requirements. An attacker can remotely obtain users' DNS query logs and login logs. Vulnerable targets include but are not limited to the latest firmware versions of DIR-817LW (A1-1.04), DIR-816L (B1-2.06), DIR-816 (B1-2.06?), DIR-850L (A1-1.09), and DIR-868L (A1-1.10).
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-03-25T21:29:04
Updated: 2024-08-04T20:54:27.952Z
Reserved: 2019-02-08T00:00:00
Link: CVE-2019-7642
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-03-25T22:29:00.810
Modified: 2024-11-21T04:48:27.040
Link: CVE-2019-7642
Redhat
No data.