High severity7.5NVD Advisory· Published Mar 25, 2019· Updated Jun 17, 2026
CVE-2019-7642
CVE-2019-7642
Description
D-Link routers with the mydlink feature have some web interfaces without authentication requirements. An attacker can remotely obtain users' DNS query logs and login logs. Vulnerable targets include but are not limited to the latest firmware versions of DIR-817LW (A1-1.04), DIR-816L (B1-2.06), DIR-816 (B1-2.06?), DIR-850L (A1-1.09), and DIR-868L (A1-1.10).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- cpe:2.3:o:dlink:dir-816_firmware:2.06:*:*:*:*:*:*:*
- cpe:2.3:o:dlink:dir-816l_firmware:2.06:*:*:*:*:*:*:*
- cpe:2.3:o:dlink:dir-817lw_firmware:1.04:*:*:*:*:*:*:*
- cpe:2.3:o:dlink:dir-850l_firmware:1.09:*:*:*:*:*:*:*
- cpe:2.3:o:dlink:dir-868l_firmware:1.10:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/xw77cve/CVE-2019-7642/blob/master/README.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.