700K+ DrayTek routers are sitting ducks on the internet, open to remote hijacking
ID: 9eb7514d-7999-5f72-b876-ca432c28df3d
STIX ID: report--9eb7514d-7999-5f72-b876-ca432c28df3d
Feed Name: The Register (Security)
Threat Score
**Critical DrayTek router vulnerabilities discovered:** Forescout's Vedere Labs found 14 bugs across 24 DrayTek Vigor models — notably CVE-2024-41592 (RCE, CVSS 10.0) and CVE-2024-41585 (command injection) — and published a proof-of-concept chain that yields remote root access; many devices (hundreds of thousands) expose their web UI to the Internet, patches are available for supported models, and the report warns of active exploitation history by APTs and botnet abuse.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
