CVE-2024-41584
03.10.2024, 19:15
DrayTek Vigor3910 devices through 4.3.2.6 are vulnerable to reflected XSS by authenticated users, caused by missing validation of the sFormAuthStr parameter.
Vendor | Product | Version |
---|---|---|
draytek | vigor3910_firmware | 𝑥 ≤ 4.3.2.6 |
𝑥
= Vulnerable software versions