CVE-2024-46554: Buffer Overflow
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the profname parameter at v2x00.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-46554?
CVE-2024-46554 has been classified as a high severity vulnerability due to its potential to cause Denial of Service attacks.
How do I fix CVE-2024-46554?
To fix CVE-2024-46554, upgrade the Draytek Vigor 3910 firmware to a version later than 4.3.2.6 to eliminate the buffer overflow vulnerability.
What impact does CVE-2024-46554 have on the Draytek Vigor 3910?
CVE-2024-46554 allows attackers to trigger a buffer overflow, leading to a Denial of Service (DoS) condition in the Draytek Vigor 3910.
Is my Draytek Vigor 3910 affected by CVE-2024-46554?
Yes, if your Draytek Vigor 3910 is running firmware version 4.3.2.6, it is affected by CVE-2024-46554.
What conditions are needed to exploit CVE-2024-46554?
An attacker must provide crafted input to the profname parameter at v2x00.cgi to successfully exploit CVE-2024-46554.