CVE-2024-41596
CVSS 3.1 Score 8 of 10 (high)
Details
Summary
CVE-2024-41596 is a buffer overflow vulnerability affecting DrayTek Vigor310 devices up to version 4.3.2.6. The issue arises due to the inadequate handling of CGI form parameters in the Vigor management UI, allowing an attacker to send maliciously crafted data and potentially cause a buffer overflow condition. Successful exploitation could result in remote code execution or denial-of-service attacks, posing a significant risk to network security. It is crucial for users of affected devices to apply the necessary patches as soon as possible to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.