DrayTek Vigor2960 v1.5.1.4 was discovered to contain a command injection vulnerability via the mainfunction.cgi component.
References
Link | Resource |
---|---|
https://github.com/sadwwcxz/Vul | Exploit Third Party Advisory |
https://www.draytek.com/ | Not Applicable |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2023-03-15 11:15
Updated : 2023-03-18 20:57
NVD link : CVE-2023-24229
Mitre link : CVE-2023-24229
JSON object : View
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
Products Affected
draytek
- vigor2960_firmware
- vigor2960