D-Link DIR-859 routers before v1.07b03_beta allow Unauthenticated Information Disclosure via the AUTHORIZED_GROUP=1%0a value, as demonstrated by vpnconfig.php.
AI analysis not yet available
Plain-English explanation, risk summary, and remediation steps will appear here once AI analysis is complete.
No Fix Known
No patch has been released yet. Apply workarounds or mitigations where available.
| Vendor | Product | Versions | Fixed In |
|---|---|---|---|
| dlink | dir-859_firmware | 1.05b03 | - |
| dlink | dir-859_firmware | - | - |
| dlink | dir-822_firmware | 2.03b01 |
Published
CVE disclosed publicly
Last Modified
Most recent update
Indexed to CVEInsight
Added to this platform
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
17
Affected Products
8
References
dlink / dir-859_firmware
| - |
| dlink | dir-822_firmware | 3.12b04 | - |
| dlink | dir-823_firmware | 1.00b06 | - |
| dlink | dir-865l_firmware | 1.07b01 | - |
| dlink | dir-868l_firmware | 1.12b04 | - |
| dlink | dir-868l_firmware | 2.05b02 | - |
| dlink | dir-869_firmware | 1.03b02 | - |
| dlink | dir-880l_firmware | 1.08b04 | - |
| dlink | dir-890l_firmware | 1.11b01 | - |
| dlink | dir-890r_firmware | 1.11b01 | - |
| dlink | dir-885l_firmware | 1.12b05 | - |
| dlink | dir-885r_firmware | 1.12b05 | - |
| dlink | dir-895l_firmware | 1.12b10 | - |
| dlink | dir-895r_firmware | 1.12b10 | - |
| dlink | dir-818lx_firmware | - | - |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability
Impact