📦 Vigor2960 Firmware

by Draytek

🔍 What is Vigor2960 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-42911

CRITICAL CVSS 9.8 Mar 29, 2022

This is a critical format string vulnerability in DrayTek router firmware that allows remote attackers to execute arbitrary code by sending specially crafted HTTP messages. Attackers can potentially g...

CVE-2024-12986

HIGH CVSS 7.3 Dec 27, 2024

This critical vulnerability allows remote attackers to execute arbitrary operating system commands on affected DrayTek gateway devices through command injection in the web management interface. Attack...

CVE-2024-48074

HIGH CVSS 8.0 Oct 28, 2024

This vulnerability allows authenticated attackers to execute arbitrary commands on DrayTek Vigor2960 routers by injecting malicious commands into the table parameter of the doPPPoE function. Attackers...

CVE-2024-43027

HIGH CVSS 8.0 Aug 21, 2024

This CVE describes a command injection vulnerability in DrayTek router firmware that allows attackers to execute arbitrary commands on affected devices. Attackers can exploit this by sending specially...

CVE-2023-24229

HIGH CVSS 7.8 Mar 15, 2023

This vulnerability allows authenticated attackers with network access to the DrayTek Vigor2960 web management interface to execute arbitrary operating system commands via the 'parameter' parameter in ...