PT-2024-7998 · Draytek · Draytek Vigor3900

Published

2024-10-28

·

Updated

2024-11-05

·

CVE-2024-51245

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions DrayTek Vigor3900 version 1.5.1.3
Description The issue allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the rename table function. This is due to the lack of measures to neutralize special elements used in the operating system command. Exploitation of the issue may allow a remote attacker to execute arbitrary code.
Recommendations For DrayTek Vigor3900 version 1.5.1.3, consider disabling the rename table function as a temporary workaround until a patch is available. Restrict access to the mainfunction.cgi file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

OS Command Injection

Weakness Enumeration

Related Identifiers

BDU:2024-09512
CVE-2024-51245

Affected Products

Draytek Vigor3900