High severity8.8NVD Advisory· Published Oct 30, 2024· Updated Jun 17, 2026
CVE-2024-51296
CVE-2024-51296
Description
In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the pingtrace function.
Affected products
3- cpe:2.3:o:draytek:vigor3900_firmware:1.5.1.3:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.