Vulnerabilities (CVE)

Filtered by vendor Draytek Subscribe
Filtered by product Vigor167 Firmware
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-47254 1 Draytek 2 Vigor167, Vigor167 Firmware 2023-12-12 N/A 9.8 CRITICAL
An OS Command Injection in the CLI interface on DrayTek Vigor167 version 5.2.2, allows remote attackers to execute arbitrary system commands and escalate privileges via any account created within the web interface.