Dlink DWR-X1820 router uses weak default password generated from its IMEI number and does not require users to change it. An attacker who knows how passwords are generated can easily crack the default password if they have the device IMEI number.
This issue was fixed in version 1.00B16CP.
Metrics
Affected Vendors & Products
References
History
Sat, 30 May 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
D-link
D-link dwr-x1820 |
|
| Vendors & Products |
D-link
D-link dwr-x1820 |
Thu, 28 May 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 28 May 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dlink DWR-X1820 router uses weak default password generated from its IMEI number and does not require users to change it. An attacker who knows how passwords are generated can easily crack the default password if they have the device IMEI number. This issue was fixed in version 1.00B16CP. | |
| Title | Use of Weak Credentials in D-Link DWR-X1820 router | |
| Weaknesses | CWE-1391 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: CERT-PL
Published:
Updated: 2026-05-28T12:02:42.626Z
Reserved: 2026-03-18T12:46:23.457Z
Link: CVE-2026-4377
Updated: 2026-05-28T12:02:30.146Z
Status : Awaiting Analysis
Published: 2026-05-28T10:16:39.940
Modified: 2026-05-28T18:00:33.730
Link: CVE-2026-4377
No data.
OpenCVE Enrichment
Updated: 2026-05-30T21:19:16Z