CVE detail
CVE-2019-20213 — CVE-2019-20213
Published 2020-01-02 · Modified 2026-06-17 · Vendor dlink · Product dir-859_firmware · Source nvd
HIGH
severity
CVSS-derived band
0.0218
EPSS probability
exploitation probability, 30d
81.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
D-Link DIR-859 routers before v1.07b03_beta allow Unauthenticated Information Disclosure via the AUTHORIZED_GROUP=1%0a value, as demonstrated by vpnconfig.php.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References