Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3hhh-46fw-chvg

Опубликовано: 09 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8

Описание

DrayTek Vigor3900 v1.5.1.6 was discovered to contain a command injection vulnerability via the sub_2C920 function at /cgi-bin/mainfunction.cgi. This vulnerability allows attackers to execute arbitrary commands via supplying a crafted HTTP message.

DrayTek Vigor3900 v1.5.1.6 was discovered to contain a command injection vulnerability via the sub_2C920 function at /cgi-bin/mainfunction.cgi. This vulnerability allows attackers to execute arbitrary commands via supplying a crafted HTTP message.

EPSS

Процентиль: 45%
0.00222
Низкий

8 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 8
nvd
больше 1 года назад

DrayTek Vigor3900 v1.5.1.6 was discovered to contain a command injection vulnerability via the sub_2C920 function at /cgi-bin/mainfunction.cgi. This vulnerability allows attackers to execute arbitrary commands via supplying a crafted HTTP message.

EPSS

Процентиль: 45%
0.00222
Низкий

8 High

CVSS3

Дефекты

CWE-78