Vulnerability Description
An authorized RCE vulnerability exists in the DrayTek Vigor2960 router version 1.4.4, where an attacker can place a malicious command into the table parameter of the doPPPoE function in the cgi-bin/mainfunction.cgi route, and finally the command is executed by the system function.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Draytek | Vigor2960 Firmware | 1.4.4 |
| Draytek | Vigor2960 | - |
Related Weaknesses (CWE)
References
- https://gist.github.com/Giles-one/6425e97dcd1ec97a722a1e20da25fad7Third Party Advisory
- https://github.com/Giles-one/Vigor2960CrackExploitThird Party Advisory
FAQ
What is CVE-2024-48074?
CVE-2024-48074 is a vulnerability with a CVSS score of 8.0 (HIGH). An authorized RCE vulnerability exists in the DrayTek Vigor2960 router version 1.4.4, where an attacker can place a malicious command into the table parameter of the doPPPoE function in the cgi-bin/ma...
How severe is CVE-2024-48074?
CVE-2024-48074 has been rated HIGH with a CVSS base score of 8.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-48074?
Check the references section above for vendor advisories and patch information. Affected products include: Draytek Vigor2960 Firmware, Draytek Vigor2960.