CVE-2023-47254
09.12.2023, 08:15
An OS Command Injection in the CLI interface on DrayTek Vigor167 version 5.2.2, allows remote attackers to execute arbitrary system commands and escalate privileges via any account created within the web interface.
| Vendor | Product | Version |
|---|---|---|
| draytek | vigor167_firmware | 5.2.2 |
𝑥
= Vulnerable software versions
References