CVE-2024-41336
CVSS 3.1 Score 7.5 of 10 (high)
Details
Summary
CVE-2024-41336: A critical vulnerability has been identified in various Draytek devices, including Vigor 165/166, Vigor 2620/LTE200, Vigor 2860/2925, Vigor 2862/2926, Vigor 2133/2762/2832, Vigor 2135/2765/2766, Vigor 2865/2866/2927, Vigor 2962/3910, Vigor 3912, and Vigor 2925. These devices have a vulnerability where passwords are stored in plaintext, posing a significant risk as unencrypted passwords can be easily accessed by unauthorized users if these devices are compromised. Users are strongly advised to update their devices to the latest firmware versions to mitigate this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.