First published: Mon Feb 25 2019(Updated: )
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. The "user" account has a blank password.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
D-Link DIR-825 Rev.B firmware | =2.10 | |
D-Link DIR-825 Rev.B firmware | ||
D-Link DIR-825 Rev.B | =2.10 | |
D-Link DIR-825 Rev.B firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-9123 has a high severity due to the presence of a blank password for the user account, which allows unauthorized access to the device.
To fix CVE-2019-9123, set a strong password for the 'user' account on the D-Link DIR-825 Rev.B 2.10 devices.
CVE-2019-9123 affects D-Link DIR-825 Rev.B devices running firmware version 2.10.
If CVE-2019-9123 is not addressed, unauthorized users could gain access to the D-Link router and compromise network security.
As of now, there are no official patches provided by D-Link for CVE-2019-9123, so users must manually secure the account.