CVE-2024-51304
EUVD-2024-4532730.10.2024, 13:15
In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the ldap_search_dn function.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| draytek | vigor3900_firmware | 1.5.1.3 |
𝑥
= Vulnerable software versions