Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
/cgi-bin/activate.cgi on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve command injection via a remote HTTP request in DEBUG mode.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
居易科技 Vigor300B 命令注入漏洞
Vulnerability Description
Draytek Vigor300B是中国台湾居易科技(Draytek)公司的一款负载均衡路由器。 Draytek Vigor3900 1.5.1之前版本、Vigor2960 1.5.1之前版本和Vigor300B 1.5.1之前版本中的/cgi-bin/activate.cgi文件存在命令注入漏洞。远程攻击者可借助远程的HTTP请求利用该漏洞注入命令。
CVSS Information
N/A
Vulnerability Type
N/A