Remote Attackers Can Modify Settings or Cause Denial of Service via .cgi Pages in DrayTek Vigor310 Devices Due to Missing Bounds Checks
CVE-2024-41595

Currently unrated

Key Information:

Vendor
DrayTek
Vendor
CVE Published:
3 October 2024

Summary

DrayTek Vigor310 devices through 4.3.2.6 allow a remote attacker to change settings or cause a denial of service via .cgi pages because of missing bounds checks on read and write operations.

References

Timeline

  • Vulnerability published

.