CVE-2024-41590

Oct. 3, 2024, 7:15 p.m.

Received
CVE has been recently published to the CVE List and has been received by the NVD.

Products

DrayTek Vigor310

  • through 4.3.2.6

Source

cve@mitre.org

Tags

CVE-2024-41590 details

Published : Oct. 3, 2024, 7:15 p.m.
Last Modified : Oct. 3, 2024, 7:15 p.m.

Description

Several CGI endpoints are vulnerable to buffer overflows, by authenticated users, because of missing bounds checking on parameters passed through POST requests to the strcpy function on DrayTek Vigor310 devices through 4.3.2.6.

CVSS Score

1 2 3 4 5 6 7 8 9 10

Weakness

Weakness Name Description
This website uses the NVD API, but is not approved or certified by it.