Lucene search

K

Dir-817lw A1 Firmware Security Vulnerabilities

cve
cve

CVE-2019-17506

There are some web interfaces without authentication requirements on D-Link DIR-868L B1-2.03 and DIR-817LW A1-1.04 routers. An attacker can get the router's username and password (and other information) via a DEVICE.ACCOUNT value for SERVICES in conjunction with AUTHORIZED_GROUP=1%0a to...

9.8CVSS

9.5AI Score

0.871EPSS

2019-10-11 08:15 PM
192
cve
cve

CVE-2019-7642

D-Link routers with the mydlink feature have some web interfaces without authentication requirements. An attacker can remotely obtain users' DNS query logs and login logs. Vulnerable targets include but are not limited to the latest firmware versions of DIR-817LW (A1-1.04), DIR-816L (B1-2.06),...

7.5CVSS

7.6AI Score

0.006EPSS

2019-03-25 10:29 PM
29