Vulnerability index

Browse CVEs

94 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Vigor300b Firmware CRITICAL 9.8
CVE-2024-12987 KEVEPSS 98%

A vulnerability, which was classified as critical, was found in DrayTek Vigor2960 and Vigor300B 1.5.1.4. Affected is an unknown function of the file …

Mitigation only
Fix from $2,300 2024-12-27
Vigor3900 Firmware HIGH 8.0
CVE-2024-45885

DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `c…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-45887

DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `c…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-45888

DrayTek Vigor3900 1.5.1.3 contains a command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-45889

DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `c…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-45890

DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability This vulnerability occurs when the `action` parameter in `cg…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-45891

DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `c…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-45893

DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `c…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-45882

DrayTek Vigor3900 1.5.1.3 contains a command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-45884

DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `c…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-51246

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doPPTP func…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-51249

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the reboot func…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-51251

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the backup func…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware HIGH 8.0
CVE-2024-51253

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doL2TP func…

Mitigation only
Fix from $1,950 2024-11-04
Vigor3900 Firmware CRITICAL 9.8
CVE-2024-51252

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the restore fun…

No fix yet
Fix from $2,300 2024-11-01
Vigor3900 Firmware HIGH 8.8
CVE-2024-51244

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doIPSec fun…

No fix yet
Fix from $1,950 2024-11-01
Vigor3900 Firmware HIGH 8.8
CVE-2024-51245

In DrayTek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the rename_tabl…

No fix yet
Fix from $1,950 2024-11-01
Vigor3900 Firmware HIGH 8.8
CVE-2024-51247

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doPPPo func…

No fix yet
Fix from $1,950 2024-11-01
Vigor3900 Firmware HIGH 8.8
CVE-2024-51248

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the modifyrow f…

No fix yet
Fix from $1,950 2024-11-01
Vigor3900 Firmware CRITICAL 9.8
CVE-2024-51255

DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the ruequest_…

Mitigation only
Fix from $2,300 2024-10-31
Vigor3900 Firmware CRITICAL 9.8
CVE-2024-51260

DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the acme_proc…

Mitigation only
Fix from $2,300 2024-10-31
Vigor3900 Firmware CRITICAL 9.8
CVE-2024-51259

DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the setup_cac…

Mitigation only
Fix from $2,300 2024-10-31
Vigor3900 Firmware HIGH 8.8
CVE-2024-51254

DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the sign_cace…

Mitigation only
Fix from $1,950 2024-10-31
Vigor3900 Firmware HIGH 8.8
CVE-2024-51258

DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doSSLTunn…

Mitigation only
Fix from $1,950 2024-10-30
Vigor3900 Firmware CRITICAL 9.8
CVE-2024-51298

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doGRETunnel…

Mitigation only
Fix from $2,300 2024-10-30
Vigor3900 Firmware HIGH 8.8
CVE-2024-51257

DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doCertifi…

Mitigation only
Fix from $1,950 2024-10-30
Vigor3900 Firmware HIGH 8.8
CVE-2024-51296

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the pingtrace f…

Mitigation only
Fix from $1,950 2024-10-30
Vigor3900 Firmware HIGH 8.8
CVE-2024-51299

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the dumpSyslog …

Mitigation only
Fix from $1,950 2024-10-30
Vigor3900 Firmware HIGH 8.8
CVE-2024-51300

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the get_rrd fun…

Mitigation only
Fix from $1,950 2024-10-30
Vigor3900 Firmware HIGH 8.8
CVE-2024-51301

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the packet_moni…

Mitigation only
Fix from $1,950 2024-10-30