Beveiligingsadvies

CVE-2023-24229

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-03-15 00:00:00
Laatst bijgewerkt 2024-08-02 10:49:09
Toegewezen door mitre
CVSS-score 7.8
Status PUBLISHED

Beschrijving

DrayTek Vigor2960 v1.5.1.4 allows an authenticated attacker with network access to the web management interface to inject operating system commands via the mainfunction.cgi 'parameter' parameter. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.