First published: Sun Feb 17 2019(Updated: )
An issue was discovered on D-Link DIR-823G devices with firmware 1.02B03. There is incorrect access control allowing remote attackers to enable Guest Wi-Fi via the SetWLanRadioSettings HNAP API to the web service provided by /bin/goahead.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Dlink Dir-823g Firmware | =1.02b03 | |
Dlink Dir-823g |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue on D-Link DIR-823G devices is CVE-2019-8392.
CVE-2019-8392 has a severity level of high.
Attackers can exploit CVE-2019-8392 by using incorrect access control to enable Guest Wi-Fi via the SetWLanRadioSettings HNAP API to the web service provided by /bin/goahead.
D-Link DIR-823G devices with firmware 1.02B03 are affected by CVE-2019-8392.
Yes, D-Link DIR-823G firmware version 1.02B03 is vulnerable to CVE-2019-8392.