D-Link routers with the mydlink feature have some web interfaces without authentication requirements. An attacker can remotely obtain users' DNS query logs and login logs. Vulnerable targets include but are not limited to the latest firmware versions of DIR-817LW (A1-1.04), DIR-816L (B1-2.06), DIR-816 (B1-2.06?), DIR-850L (A1-1.09), and DIR-868L (A1-1.10).

Project Subscriptions

Vendors Products
Dir-816 Subscribe
Dir-816 Firmware Subscribe
Dir-816l Subscribe
Dir-816l Firmware Subscribe
Dir-817lw Subscribe
Dir-817lw Firmware Subscribe
Dir-850l Subscribe
Dir-850l Firmware Subscribe
Dir-868l Subscribe
Dir-868l Firmware Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T20:54:27.952Z

Reserved: 2019-02-08T00:00:00

Link: CVE-2019-7642

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-03-25T22:29:00.810

Modified: 2024-11-21T04:48:27.040

Link: CVE-2019-7642

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses