References https://cve.imfht.com/detail/CVE-2023-1163 https://nvd.nist.gov/vuln/detail/CVE-2023-1163 https://github.com/advisories/GHSA-f5vh-pgc9-ww94 https://vuldb.com/vuln/222259 https://stack.chaitin.com/poc/detail/3467 https://cvefeed.io/vuln/product/108825/draytekvigor_2960/
Related VulnerabilitiesPoCCVE-2020-15415: DrayTek Vigor - Command InjectionPoCCVE-2020-8515: DrayTek - Remote Code ExecutionPoCCVE-2021-20123: Draytek VigorConnect 1.6.0-B - Local File InclusionPoCCVE-2021-20124: Draytek VigorConnect 6.0-B3 - Local File InclusionPoCCVE-2024-12987: DrayTek Vigor - Command InjectionPoCCVE-2020-8515: DrayTek pre-auth RCEDrayTek Vigor2960 Router 命令注入漏洞DrayTek Vigor 路由器缓冲区溢出漏洞 可致远程代码执行DrayTek Vigor AP910C 路由器 /goform/addRouting 远程命令执行漏洞PoCdraytek路由器addrouting命令执行漏洞DrayTek Vigor 路由器命令注入漏洞DrayTek Vigor 2960路由器 CVE-2023-1162 命令注入漏洞DrayTek Vigor AP910C 路由器默认口令漏洞