Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
DrayTek Vigor310 devices through 4.3.2.6 allow a remote attacker to execute arbitrary code via the function ft_payload_dns(), because a byte sign-extension operation occurs for the length argument of a _memcpy call, leading to a heap-based Buffer Overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DrayTek Vigor 3910 安全漏洞
Vulnerability Description
DrayTek Vigor 3910是中国居易(DrayTek)公司的一款适用于企业网络的高性能路由器。 DrayTek Vigor 3910 4.3.2.6版本及之前版本存在安全漏洞,该漏洞源于ft_payload_dns函数的_memcpy调用发生了字节符号扩展操作,导致基于堆的缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A