CVE-2019-9124: Critical severity d-link dir-878 firmware vulnerability
Published Feb 25, 2019
·Updated
An issue was discovered on D-Link DIR-878 1.12B01 devices. At the /HNAP1 URI, an attacker can log in with a blank password.
Affected Software
4 affected components
D-Link Dir-878 Firmware=1.12b01
Dlink Dir-878
All of the following
D-Link Dir-878 Firmware=1.12b01
Dlink Dir-878
Event History
Feb 25, 2019
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Data Sourced
via NVD·05:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-9124.
2
What is the severity of CVE-2019-9124?
The severity of CVE-2019-9124 is critical with a CVSS score of 9.8.
3
Which devices are affected by CVE-2019-9124?
D-Link DIR-878 1.12B01 devices are affected by CVE-2019-9124.
4
How can an attacker exploit CVE-2019-9124?
An attacker can log in with a blank password at the /HNAP1 URI to exploit CVE-2019-9124.
5
Is there a fix available for CVE-2019-9124?
At the moment, there is no known fix available for CVE-2019-9124. It is recommended to update the firmware if one becomes available.