** UNSUPPORTED WHEN ASSIGNED ** Draytek Vigor2960 v1.5.1.4 and v1.5.1.5 are vulnerable to directory traversal via the mainfunction.cgi dumpSyslog 'option' parameter allowing an authenticated attacker with access to the web management interface to delete arbitrary files. Vigor2960 is no longer supported.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: cisa-cg

Published: 2023-11-22T19:47:07.692Z

Updated: 2023-12-19T21:00:05.632Z

Reserved: 2023-11-22T19:31:54.376Z


Link: CVE-2023-6265

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-11-22T20:15:09.600

Modified: 2024-05-17T02:33:36.357


Link: CVE-2023-6265

JSON object: View

cve-icon Redhat Information

No data.

CWE