CVE-2019-7388
An issue was discovered in /bin/goahead on D-Link DIR-823G devices with firmware 1.02B03. There is incorrect access control allowing remote attackers to get sensitive information (such as MAC address) about all clients in the WLAN via the GetClientInfo HNAP API. Consequently, an attacker can achieve information disclosure without authentication.
- Affected products
- Dir-823
- Dlink dir-823g Firmware
- = 1.02b03
- CVSS 3.0
- 7.5 HIGH
- EPSS
- 2.8% (85th percentile)
- Weakness
- CWE-200
- NVD status
- Modified
- Published
- 2019-02-05
CVE-2019-7388 at NVD
No indexed exploits for CVE-2019-7388 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2019-7388 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.