CVE-2023-24229

DrayTek Vigor2960 v1.5.1.4 was discovered to contain a command injection vulnerability via the mainfunction.cgi component.
References
Link Resource
https://github.com/sadwwcxz/Vul Exploit Third Party Advisory
https://www.draytek.com/ Not Applicable
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:draytek:vigor2960_firmware:1.5.1.4:*:*:*:*:*:*:*
cpe:2.3:h:draytek:vigor2960:-:*:*:*:*:*:*:*

Information

Published : 2023-03-15 11:15

Updated : 2023-03-18 20:57


NVD link : CVE-2023-24229

Mitre link : CVE-2023-24229


JSON object : View

CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')

Advertisement

dedicated server usa

Products Affected

draytek

  • vigor2960_firmware
  • vigor2960