CVE-2019-9124: D-Link Dir-878 Firmware

Critical severity, CVSS 9.8. EPSS: 2.2% chance of exploitation in the next 30 days.

An issue was discovered on D-Link DIR-878 1.12B01 devices. At the /HNAP1 URI, an attacker can log in with a blank password.

Affected products

  • D-Link Dir-878 Firmware: version 1.12b01 only

Published 2019-02-25. Last modified 2026-06-17.