Vulnerability in Draytek's Vigor3900 Allowing Malicious Commands Execution
CVE-2024-51301
8.8HIGH
What is CVE-2024-51301?
The DrayTek Vigor3900 router running firmware version 1.5.1.3 is vulnerable to command injection, allowing attackers to inject and execute unauthorized commands through the mainfunction.cgi interface. This exploit can be triggered by calling the packet_monitor function, potentially compromising the integrity of the device and the network it supports.