I have heard of HTML5/WebRTC API browser fingerprinting that can expose a user's RFC1918 private IP address (10.x.x.x whatever...) on their client device, but not MAC address.
https://network23.org/inputisevil/2015/09/06/how-html5-apis-...
https://network23.org/inputisevil/2015/09/06/how-html5-apis-...