Loading HuntDB...

DrayTek

10 Products 58 CVEs

CVE Severity Distribution (All Time)

Critical
5
High
40
Medium
6
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 48 CVEs

Recent CVEs

View all
CVE-2024-12987 UNKNOWN 7 months ago

A vulnerability, which was classified as critical, was found in DrayTek Vigor2960 and Vigor300B 1.5.1.4. Affected is an unknown function of the file …

CVE-2024-12986 UNKNOWN 7 months ago

A vulnerability, which was classified as critical, has been found in DrayTek Vigor2960 and Vigor300B 1.5.1.3/1.5.1.4. This issue affects some unknown…

CVE-2024-51251 HIGH 8 months, 3 weeks ago

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the backup func…

CVE-2024-51246 HIGH 8 months, 3 weeks ago

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doPPTP func…

CVE-2024-51253 HIGH 8 months, 3 weeks ago

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doL2TP func…

CVE-2024-51249 HIGH 8 months, 3 weeks ago

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the reboot func…

CVE-2024-45885 HIGH 8 months, 3 weeks ago

DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `c…

CVE-2024-45889 HIGH 8 months, 3 weeks ago

DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `c…

CVE-2024-45884 HIGH 8 months, 3 weeks ago

DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `c…

CVE-2024-45882 HIGH 8 months, 3 weeks ago

DrayTek Vigor3900 1.5.1.3 contains a command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.…

Related Security News

CISA Adds Three Known Exploited Vulnerabilities to Catalog
2025-05-15 12:00 Cisa.gov

CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2024-12987 DrayTek Vigor Routers OS Command Injection Vulnerabil…