CVE-2019-8392: D-Link Dir-823g Firmware

High severity, CVSS 7.5. EPSS: 2.2% chance of exploitation in the next 30 days.

An issue was discovered on D-Link DIR-823G devices with firmware 1.02B03. There is incorrect access control allowing remote attackers to enable Guest Wi-Fi via the SetWLanRadioSettings HNAP API to the web service provided by /bin/goahead.

Affected products

  • D-Link Dir-823g Firmware: version 1.02b03 only

Published 2019-02-17. Last modified 2026-06-17.