CVE-2019-7642: High severity d-link dir-817lw firmware vulnerability
D-Link routers with the mydlink feature have some web interfaces without authentication requirements. An attacker can remotely obtain users' DNS query logs and login logs. Vulnerable targets include but are not limited to the latest firmware versions of DIR-817LW (A1-1.04), DIR-816L (B1-2.06), DIR-816 (B1-2.06?), DIR-850L (A1-1.09), and DIR-868L (A1-1.10).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-7642?
CVE-2019-7642 is a vulnerability that affects D-Link routers with the mydlink feature, allowing attackers to remotely obtain users' DNS query logs and login logs.
Which D-Link routers are affected by CVE-2019-7642?
D-Link routers with the mydlink feature, specifically the latest firmware versions of DIR-817LW (A1-1.04), DIR-816L (B1-2.06), DIR-816, DIR-850L, and DIR-868L are affected by CVE-2019-7642.
How severe is CVE-2019-7642?
CVE-2019-7642 has a severity rating of 7.5 (high).
How can I fix CVE-2019-7642?
To fix CVE-2019-7642, make sure to update your D-Link router firmware to the latest version provided by the vendor.
Where can I find more information about CVE-2019-7642?
More information about CVE-2019-7642 can be found at the following link: [https://github.com/xw77cve/CVE-2019-7642/blob/master/README.md](https://github.com/xw77cve/CVE-2019-7642/blob/master/README.md)