CVE-2019-18852
Certain D-Link devices have a hardcoded Alphanetworks user account with TELNET access because of /etc/config/image_sign or /etc/alpha_config/image_sign. This affects DIR-600 B1 V2.01 for WW, DIR-890L A1 v1.03, DIR-615 J1 v100 (for DCN), DIR-645 A1 v1.03, DIR-815 A1 v1.01, DIR-823 A1 v1.01, and DIR-842 C1 v3.00.
- Dlink dir-600 b1 Firmware
- = 2.01
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 1.5% (72th percentile)
- Weakness
- CWE-319
- NVD status
- Modified
- Published
- 2019-11-11
CVE-2019-18852 at NVD
No indexed exploits for CVE-2019-18852 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2019-18852 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.