.. / CVE-2019-17506

Exploit for D-Link DIR-868L/817LW - Information Disclosure (CVE-2019-17506)

Description:

D-Link DIR-868L B1-2.03 and DIR-817LW A1-1.04 routers are vulnerable to information disclosure vulnerabilities because certain web interfaces do not require authentication. An attacker can get the router’s username and password (and other information) via a DEVICE.ACCOUNT value for SERVICES in conjunction with AUTHORIZED_GROUP=1%0a to getcfg.php. This could be used to control the router remotely.

Nuclei Template

View the template here CVE-2019-17506.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2019/CVE-2019-17506.yaml
Copy

References:

https://nvd.nist.gov/vuln/detail/CVE-2019-17506
https://github.com/openx-org/BLEN
https://github.com/dahua966/Routers-vuls/blob/master/DIR-868/name%26passwd.py
https://github.com/SexyBeast233/SecBooks
https://github.com/sobinge/nuclei-templates