An issue was discovered on certain DrayTek Vigor routers before July 2022 such as the Vigor3910 before 4.3.1.1. /cgi-bin/wlogin.cgi has a buffer overflow via the username or password to the aa or ab field.

Project Subscriptions

Vendors Products
Draytek Subscribe
Vigor1000b Subscribe
Vigor1000b Firmware Subscribe
Vigor165 Subscribe
Vigor165 Firmware Subscribe
Vigor166 Subscribe
Vigor166 Firmware Subscribe
Vigor2133 Subscribe
Vigor2133 Firmware Subscribe
Vigor2133ac Subscribe
Vigor2133ac Firmware Subscribe
Vigor2133fvac Subscribe
Vigor2133fvac Firmware Subscribe
Vigor2133n Subscribe
Vigor2133n Firmware Subscribe
Vigor2133vac Subscribe
Vigor2133vac Firmware Subscribe
Vigor2135 Subscribe
Vigor2135 Firmware Subscribe
Vigor2135ac Subscribe
Vigor2135ac Firmware Subscribe
Vigor2135fvac Subscribe
Vigor2135fvac Firmware Subscribe
Vigor2135vac Subscribe
Vigor2135vac Firmware Subscribe
Vigor2620l Subscribe
Vigor2620l Firmware Subscribe
Vigor2620ln Subscribe
Vigor2620ln Firmware Subscribe
Vigor2762 Subscribe
Vigor2762 Firmware Subscribe
Vigor2762ac Subscribe
Vigor2762ac Firmware Subscribe
Vigor2762n Subscribe
Vigor2762n Firmware Subscribe
Vigor2762vac Subscribe
Vigor2762vac Firmware Subscribe
Vigor2765 Subscribe
Vigor2765 Firmware Subscribe
Vigor2765ac Subscribe
Vigor2765ac Firmware Subscribe
Vigor2765vac Subscribe
Vigor2765vac Firmware Subscribe
Vigor2766 Subscribe
Vigor2766 Firmware Subscribe
Vigor2766ac Subscribe
Vigor2766ac Firmware Subscribe
Vigor2766vac Subscribe
Vigor2766vac Firmware Subscribe
Vigor2832 Subscribe
Vigor2832 Firmware Subscribe
Vigor2862 Subscribe
Vigor2862 Firmware Subscribe
Vigor2862ac Subscribe
Vigor2862ac Firmware Subscribe
Vigor2862b Subscribe
Vigor2862b Firmware Subscribe
Vigor2862bn Subscribe
Vigor2862bn Firmware Subscribe
Vigor2862l Subscribe
Vigor2862l Firmware Subscribe
Vigor2862lac Subscribe
Vigor2862lac Firmware Subscribe
Vigor2862ln Subscribe
Vigor2862ln Firmware Subscribe
Vigor2862n Subscribe
Vigor2862n Firmware Subscribe
Vigor2862vac Subscribe
Vigor2862vac Firmware Subscribe
Vigor2865 Subscribe
Vigor2865 Firmware Subscribe
Vigor2865ac Subscribe
Vigor2865ac Firmware Subscribe
Vigor2865ax Subscribe
Vigor2865ax Firmware Subscribe
Vigor2865l Subscribe
Vigor2865l Firmware Subscribe
Vigor2865lac Subscribe
Vigor2865lac Firmware Subscribe
Vigor2865vac Subscribe
Vigor2865vac Firmware Subscribe
Vigor2866 Subscribe
Vigor2866 Firmware Subscribe
Vigor2866ac Subscribe
Vigor2866ac Firmware Subscribe
Vigor2866ax Subscribe
Vigor2866ax Firmware Subscribe
Vigor2866l Subscribe
Vigor2866l Firmware Subscribe
Vigor2866lac Subscribe
Vigor2866lac Firmware Subscribe
Vigor2866vac Subscribe
Vigor2866vac Firmware Subscribe
Vigor2915 Subscribe
Vigor2915 Firmware Subscribe
Vigor2915ac Subscribe
Vigor2915ac Firmware Subscribe
Vigor2926 Subscribe
Vigor2926 Firmware Subscribe
Vigor2926ac Subscribe
Vigor2926ac Firmware Subscribe
Vigor2926l Subscribe
Vigor2926l Firmware Subscribe
Vigor2926lac Subscribe
Vigor2926lac Firmware Subscribe
Vigor2926ln Subscribe
Vigor2926ln Firmware Subscribe
Vigor2926n Subscribe
Vigor2926n Firmware Subscribe
Vigor2926vac Subscribe
Vigor2926vac Firmware Subscribe
Vigor2927 Subscribe
Vigor2927 Firmware Subscribe
Vigor2927ac Subscribe
Vigor2927ac Firmware Subscribe
Vigor2927ax Subscribe
Vigor2927ax Firmware Subscribe
Vigor2927l Subscribe
Vigor2927l Firmware Subscribe
Vigor2927lac Subscribe
Vigor2927lac Firmware Subscribe
Vigor2927vac Subscribe
Vigor2927vac Firmware Subscribe
Vigor2952 Subscribe
Vigor2952 Firmware Subscribe
Vigor2952p Subscribe
Vigor2952p Firmware Subscribe
Vigor2962 Subscribe
Vigor2962 Firmware Subscribe
Vigor2962p Subscribe
Vigor2962p Firmware Subscribe
Vigor3220 Subscribe
Vigor3220 Firmware Subscribe
Vigor3910 Subscribe
Vigor3910 Firmware Subscribe
Vigorlte 200n Subscribe
Vigorlte 200n Firmware Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-03T07:46:43.481Z

Reserved: 2022-06-08T00:00:00

Link: CVE-2022-32548

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-08-29T06:15:09.423

Modified: 2024-11-21T07:06:36.290

Link: CVE-2022-32548

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses