Sploitus

CVE-2019-7642

1 known exploit for CVE-2019-7642

D-Link routers with the mydlink feature have some web interfaces without authentication requirements. An attacker can remotely obtain users' DNS query logs and login logs. Vulnerable targets include but are not limited to the latest firmware versions of DIR-817LW (A1-1.04), DIR-816L (B1-2.06), DIR-816 (B1-2.06?), DIR-850L (A1-1.09), and DIR-868L (A1-1.10).

Affected products
Dir-816, Dir-817Lw, Dir-850L, Dir-868L
Dlink dir-817lw Firmware
= 1.04
Fix
Available
CVSS 3.1
7.5 HIGH
EPSS
2.6% (84th percentile)
Weakness
CWE-306
NVD status
Modified
Published
2019-03-25
CVE-2019-7642 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2019-7642

Proof-of-concept code and exploit modules indexed by Sploitus