ZeroHour

CVE-2024-41595

CVSS 3.1
8.0 high
EPSS
<1%p27
Published
()
Modified
Description

DrayTek Vigor310 devices through 4.3.2.6 allow a remote attacker to change settings or cause a denial of service via .cgi pages because of missing bounds checks on read and write operations.

Vendors
draytek
Products
vigor3910 firmware
Weakness
CWE-125, CWE-787
Vector
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news