** UNSUPPORTED WHEN ASSIGNED ** Draytek Vigor2960 v1.5.1.4 and v1.5.1.5 are vulnerable to directory traversal via the mainfunction.cgi dumpSyslog 'option' parameter allowing an authenticated attacker with access to the web management interface to delete arbitrary files. Vigor2960 is no longer supported.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisa-cg
Published: 2023-11-22T19:47:07.692Z
Updated: 2023-12-19T21:00:05.632Z
Reserved: 2023-11-22T19:31:54.376Z
Link: CVE-2023-6265
JSON object: View
NVD Information
Status : Modified
Published: 2023-11-22T20:15:09.600
Modified: 2024-05-17T02:33:36.357
Link: CVE-2023-6265
JSON object: View
Redhat Information
No data.
CWE