logo

700K+ DrayTek routers are sitting ducks on the internet, open to remote hijacking

ID: 9eb7514d-7999-5f72-b876-ca432c28df3d

STIX ID: report--9eb7514d-7999-5f72-b876-ca432c28df3d

Feed Name: The Register (Security)

Threat Score
90/100

Date Published: 2024-10-02

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

**Critical DrayTek router vulnerabilities discovered:** Forescout's Vedere Labs found 14 bugs across 24 DrayTek Vigor models — notably CVE-2024-41592 (RCE, CVSS 10.0) and CVE-2024-41585 (command injection) — and published a proof-of-concept chain that yields remote root access; many devices (hundreds of thousands) expose their web UI to the Internet, patches are available for supported models, and the report warns of active exploitation history by APTs and botnet abuse.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.