MAC address vendor

Davolink Inc. — 2 prefixes (MA-L)

Primary prefix
00:08:52
Block
MA-L
Status
Active

Summary

// what this is
Davolink is registered to MAC prefix 00:08:52 and 1 more in the IEEE OUI database. When a device's MAC address begins with 00:08:52, that block was registered by Davolink — the OUI identifies the maker of the network hardware, which is not always the brand on the device.
// analyst note
Two OUI blocks, a KOSDAQ listing, named device models, and a formally assigned Critical CVE together establish Davolink as a substantive, identifiable networking-hardware vendor rather than a bare shell registration; OUI alone cannot distinguish which specific Davolink model a device is.
[ 01 ] — Context

About this vendor.

Updated  ·  Confidence: High

A MAC address beginning with 00:08:52 or 60:29:D5 identifies hardware from Davolink Inc., a South Korean networking-equipment manufacturer, most often seen on consumer and carrier-distributed Wi-Fi routers, DSL/VDSL gateways, and access points.

Davolink holds two separate IEEE MA-L (24-bit OUI) assignments rather than a single block, registered under name-drift variants of the same company across the two rows: "Davolink Co. Inc." at 00:08:52 and "DAVOLINK Inc." at 60:29:D5. The 60:29:D5 registry address matches Davolink's current Anyang-si, Gyeonggi-do headquarters, confirming the two rows belong to one company, not two unrelated registrants.

Founded in June 2000, Davolink is a publicly listed company on South Korea's KOSDAQ exchange (ticker 340360), having gone public via a SPAC merger with Yuanta 6 Special Purpose Acquisition Co. It manufactures Wi-Fi access points, AP controllers, VoIP gateways, and home/carrier gateways under lines such as SmartAir, sold to major Korean telcos and cable operators including KT, SK Broadband, LG U+, and CJ Hellovision.

Two published security disclosures affect Davolink CPE. CVE-2018-10618 (CVSS v3.0 base 9.8, Critical) affects the DVW-3200N wireless router on firmware prior to 1.00.06 — a weak password-hash flaw covered by CISA advisory ICSA-18-212-01. A separate, uncredentialed 2016 disclosure describes an unauthenticated admin-password-change flaw plus a CSRF weakness in the DV-2051 gateway's web interface; no CVE ID was ever assigned to that finding. CVE-2019-16057 is unrelated — it belongs to a D-Link DNS-320 device, not Davolink.

IEEE assignments
00:08:52 → "Davolink Co. Inc.", 60:29:D5 → "DAVOLINK Inc." [Confirmed] — the IEEE MA-L registry (rows 000852, 6029D5)
Registry / block size
MA-L (24-bit OUI) x2; no MA-M (the IEEE MA-M registry) or MA-S (the IEEE MA-S registry) sub-blocks found under "davolink" [Confirmed] — the IEEE MA-L registry, the IEEE MA-M registry, the IEEE MA-S registry
HQ / country
112 Beolmal-ro, Dongan-gu, Anyang-si, Gyeonggi-do 14057, South Korea [Confirmed] — the IEEE MA-L registry, https://davolink.tradekorea.com/company.do
Company status
active; KOSDAQ-listed under ticker 340360 (formerly Yuanta 6 Special Purpose Acquisition Co., SPAC merger) [Confirmed] — https://finance.yahoo.com/quote/340360.KQ/, https://stockanalysis.com/quote/kosdaq/340360/company/
Founded
June 2000 [Confirmed] — https://www.netmanias.com/en/davolink/about/157/
Device types
Wi-Fi access points, AP controllers, VoIP gateways, home/carrier DSL/VDSL routers and gateways [Confirmed] — https://www.netmanias.com/en/davolink/about/157/
Notable products / models
SmartAir AP line, DVW-3200N, DV-2051, DV-2020, DV-501 [Confirmed] — https://nvd.nist.gov/vuln/detail/CVE-2018-10618, https://www.exploit-db.com/exploits/40205, https://www.netmanias.com/en/davolink/about/157/
Named customers
KT, SK Broadband, LG U+, CJ Hellovision [Confirmed] — https://www.netmanias.com/en/davolink/about/157/
Registration date caveat
IEEE's the IEEE MA-L registry (Registry/Assignment/Organization Name/Organization Address columns only) publishes no assignment/registration date for either prefix; no third-party lookup date is asserted here [Confirmed] — the IEEE MA-L registry
Security history
CVE-2018-10618 (DVW-3200N, firmware < 1.00.06, weak password hash, CWE-916, CVSS v3.0 9.8 Critical), CISA ICSA-18-212-01 [Confirmed] — https://nvd.nist.gov/vuln/detail/CVE-2018-10618, https://www.cisa.gov/news-events/ics-advisories/icsa-18-212-01
Security history (no CVE assigned)
DV-2051 unauthenticated admin-password-change flaw + CSRF, disclosed 2016 by researcher Eric Flokstra [Confirmed] — https://www.exploit-db.com/exploits/40205, https://packetstormsecurity.com/files/138198
Excluded finding
CVE-2019-16057 belongs to a D-Link DNS-320 device, not Davolink — noted to prevent false attribution [Confirmed]
Website
www.davolink.co.kr [Likely] — https://davolink.tradekorea.com/company.do (address matches registry row; direct fetch of davolink.co.kr returned no renderable text, likely JS-rendered)
Related vendors
none identified [Unknown]
Analyst note
two OUI blocks + KOSDAQ listing + named device models + a formally assigned Critical CVE together establish Davolink as a substantive, identifiable networking-hardware vendor, not a bare shell registration; OUI alone still cannot distinguish which specific Davolink model a device is.
[ 02 ] — OUI prefixes

Assignments by IEEE.

2
// registered prefixes2
  1. 00:08:52MA-L
  2. 60:29:D5MA-L
[ 03 ] — Related

Keep digging.