D-Link routers with the mydlink feature have some web interfaces without authentication requirements. An attacker can remotely obtain users' DNS query logs and login logs. Vulnerable targets include but are not limited to the latest firmware versions of DIR-817LW (A1-1.04), DIR-816L (B1-2.06), DIR-816 (B1-2.06?), DIR-850L (A1-1.09), and DIR-868L (A1-1.10).
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T20:54:27.952Z
Reserved: 2019-02-08T00:00:00
Link: CVE-2019-7642

No data.

Status : Modified
Published: 2019-03-25T22:29:00.810
Modified: 2024-11-21T04:48:27.040
Link: CVE-2019-7642

No data.

No data.