SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2022-32548

An issue was discovered on certain DrayTek Vigor routers before July 2022 such as the Vigor3910 before 4.3.1.1. /cgi-bin/wlogin.cgi has a buffer overflow via the username or password to the aa or ab field.

CRITICAL 9.8EPSS 33.8%

Does this matter?

EPSS puts the probability of exploitation in the next 30 days at 33.8%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.

Description

An issue was discovered on certain DrayTek Vigor routers before July 2022 such as the Vigor3910 before 4.3.1.1. /cgi-bin/wlogin.cgi has a buffer overflow via the username or password to the aa or ab field.

CVSS 3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
33.79% probability · 98th percentile
CISA KEV
Not listed
Weakness
CWE-120
Affected
draytek/vigor3910 firmware · draytek/vigor1000b firmware · draytek/vigor2962 firmware · draytek/vigor2962p firmware · draytek/vigor2927 firmware · draytek/vigor2927ax firmware · draytek/vigor2927ac firmware · draytek/vigor2927vac firmware · draytek/vigor2927l firmware · draytek/vigor2927lac firmware · draytek/vigor2915 firmware · draytek/vigor2915ac firmware · draytek/vigor2952 firmware · draytek/vigor2952p firmware · draytek/vigor3220 firmware · draytek/vigor2926 firmware · draytek/vigor2926n firmware · draytek/vigor2926ac firmware · draytek/vigor2926vac firmware · draytek/vigor2926l firmware · +40 more
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.