CVE-2024-45887
04.11.2024, 15:15
DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.cgi` is set to `doOpenVPN.`
Vendor | Product | Version |
---|---|---|
draytek | vigor3900_firmware | 1.5.1.3 |
𝑥
= Vulnerable software versions