2025-02-27 23:03:48 +00:00
{
"id" : "CVE-2024-41334" ,
"sourceIdentifier" : "cve@mitre.org" ,
"published" : "2025-02-27T21:15:36.483" ,
2025-06-03 16:03:55 +00:00
"lastModified" : "2025-06-03T14:06:43.900" ,
"vulnStatus" : "Analyzed" ,
2025-02-27 23:03:48 +00:00
"cveTags" : [ ] ,
"descriptions" : [
{
"lang" : "en" ,
"value" : "Draytek devices Vigor 165/166 prior to v4.2.6 , Vigor 2620/LTE200 prior to v3.9.8.8, Vigor 2860/2925 prior to v3.9.7, Vigor 2862/2926 prior to v3.9.9.4, Vigor 2133/2762/2832 prior to v3.9.8, Vigor 2135/2765/2766 prior to v4.4.5.1, Vigor 2865/2866/2927 prior to v4.4.5.3, Vigor 2962/3910 prior to v4.3.2.7, Vigor 3912 prior to v4.3.5.2, and Vigor 2925 up to v3.9.6 were discovered to not utilize certificate verification, allowing attackers to upload crafted APPE modules from non-official servers, leading to arbitrary code execution."
2025-02-28 17:03:48 +00:00
} ,
{
"lang" : "es" ,
"value" : "Se descubri\u00f3 que los dispositivos Draytek Vigor 165/166 anteriores a la v4.2.6, Vigor 2620/LTE200 anteriores a la v3.9.8.8, Vigor 2860/2925 anteriores a la v3.9.7, Vigor 2862/2926 anteriores a la v3.9.9.4, Vigor 2133/2762/2832 anteriores a la v3.9.8, Vigor 2135/2765/2766 anteriores a la v4.4.5.1, Vigor 2865/2866/2927 anteriores a la v4.4.5.3, Vigor 2962/3910 anteriores a la v4.3.2.7, Vigor 3912 anteriores a la v4.3.5.2 y Vigor 2925 hasta la v3.9.6 no utilizaban la verificaci\u00f3n de certificados, lo que permit\u00eda a los atacantes cargar m\u00f3dulos APPE manipulados desde servidores no oficiales, lo que lleva a la ejecuci\u00f3n de c\u00f3digo arbitrario."
}
] ,
"metrics" : {
"cvssMetricV31" : [
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"cvssData" : {
"version" : "3.1" ,
2025-05-06 20:04:12 +00:00
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" ,
"baseScore" : 8.8 ,
"baseSeverity" : "HIGH" ,
2025-02-28 17:03:48 +00:00
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
2025-05-06 20:04:12 +00:00
"privilegesRequired" : "LOW" ,
2025-02-28 17:03:48 +00:00
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "HIGH" ,
"availabilityImpact" : "HIGH"
} ,
2025-05-06 20:04:12 +00:00
"exploitabilityScore" : 2.8 ,
2025-02-28 17:03:48 +00:00
"impactScore" : 5.9
}
]
} ,
"weaknesses" : [
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"description" : [
{
"lang" : "en" ,
2025-05-06 20:04:12 +00:00
"value" : "CWE-295"
2025-02-28 17:03:48 +00:00
}
]
2025-02-27 23:03:48 +00:00
}
] ,
2025-06-03 16:03:55 +00:00
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor166_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.2.6" ,
"matchCriteriaId" : "013EEA0E-3D6A-43AE-A504-8439462C4F20"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor166:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7E33E647-5883-44FA-9915-34B89090D4E4"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2620_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.9.8.8" ,
"matchCriteriaId" : "41CEC37D-608B-4A8C-B8F4-803FF9A8179D"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2620:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5D98663B-F2F5-4ADC-9FD5-75846890EEBA"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigorlte200_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.9.8.8" ,
"matchCriteriaId" : "BDF86F14-D8AA-4F7A-978E-C390BECD2A56"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigorlte200:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "4DBF2015-9315-44C8-A9FE-E86146F1958E"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2860_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.9.7" ,
"matchCriteriaId" : "3B13C853-B725-4F3F-B919-1EDCF1F1FA6B"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2860:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "266C73DE-BFC6-4F3E-B022-559B3971CA44"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2925_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.9.7" ,
"matchCriteriaId" : "D9512D67-5D05-4707-9C01-FEF27BC7D8CD"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2925:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7536B29C-2030-4331-B8BF-D269D86D199B"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2862_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.9.9.4" ,
"matchCriteriaId" : "825055C3-9212-4406-865A-5CCB27C4E3FE"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2862:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "8B01EDAE-BB9E-4431-BE8C-6505BA7CA42D"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2926_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.9.9.4" ,
"matchCriteriaId" : "3E5E7BCA-A181-4689-80AD-5B0BF4A62D45"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2926:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AF1B117B-603D-493C-A804-C18ED332A221"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2133_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.9.8" ,
"matchCriteriaId" : "CEF9194C-9EC2-4B08-8264-F58E1C649473"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2133:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1878E59C-FB40-435D-940A-8952C56FA88B"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2762_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.9.8" ,
"matchCriteriaId" : "68C3D0EB-6019-43A2-BE4E-17E30985BCF0"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2762:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3873B2B9-95C1-4F00-9165-7C4D2A90CDE5"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2832_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "3.9.8" ,
"matchCriteriaId" : "07D71EA7-2F97-4F7D-BDB8-246710EEEE34"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2832:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B0978465-D59F-4C0A-A29F-5D7BE58BA557"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2135_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.4.5.1" ,
"matchCriteriaId" : "6FD4B17C-2E8A-45C9-8475-C5FD40C86052"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2135:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AEDC8A7F-08CF-44D2-A9A5-A1353AF35B45"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2765_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.4.5.1" ,
"matchCriteriaId" : "815465FB-9BDB-4A16-9E8A-A73B928A7999"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2765:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "60657812-D3A8-4B1B-B7BE-F629991CB053"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2766_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.4.5.1" ,
"matchCriteriaId" : "73E966A8-E862-4118-B178-93C297765B0B"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2766:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C0AB3C84-67CA-4531-85FB-1A56F3C93ABF"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2865_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.4.5.3" ,
"matchCriteriaId" : "31F174D4-CDE6-401D-9040-34B862BDE1F9"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2865:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "871448C6-9183-4828-A287-05F5EC6A44F6"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2866_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.4.5.3" ,
"matchCriteriaId" : "D9B2CD77-C72F-4C26-B082-EA2671A59116"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2866:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0D0D2760-739F-4C79-AEDC-8B2CCCA2FF53"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2927_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.4.5.3" ,
"matchCriteriaId" : "570A3205-4E89-47E5-9FAE-2D4FFBD5A667"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2927:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "12460F51-25AB-4EA9-BC43-9CE8DA992D75"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor2962_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.3.2.7" ,
"matchCriteriaId" : "2D8A49BF-8174-42D6-B7C2-A461F0B3DC57"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor2962:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BD0C9A21-7CFE-452F-8505-834AB8579D9B"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor3910_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.3.2.7" ,
"matchCriteriaId" : "20C6D6BC-9B8D-4108-80F8-4647013B7843"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor3910:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "894E4DDA-D9BE-441D-B447-B1CE52959347"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor3912_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.3.5.2" ,
"matchCriteriaId" : "B7ECBEFC-3444-4732-80C5-24E4B40B7413"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor3912:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "282E5318-DAA8-4AA2-8E7D-4B8BD9162153"
}
]
}
]
} ,
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:draytek:vigor165_firmware:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "4.2.6" ,
"matchCriteriaId" : "120469A7-CC8F-46B9-8EAD-D272485DBBAC"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:draytek:vigor165:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "8E644893-0457-43A9-98AB-9DB37A5C415C"
}
]
}
]
}
] ,
2025-02-27 23:03:48 +00:00
"references" : [
{
"url" : "http://draytek.com" ,
2025-06-03 16:03:55 +00:00
"source" : "cve@mitre.org" ,
"tags" : [
"Product"
]
2025-02-27 23:03:48 +00:00
} ,
{
"url" : "https://medium.com/faraday/advisory-multiple-vulnerabilities-affecting-draytek-routers-78a6cb8b3946" ,
2025-06-03 16:03:55 +00:00
"source" : "cve@mitre.org" ,
"tags" : [
"Third Party Advisory"
]
2025-02-27 23:03:48 +00:00
}
]
}