CVE-2024-41595: DrayTek VIGOR3910 Firmware
High severity, CVSS 8.0. EPSS: 0.3% chance of exploitation in the next 30 days.
DrayTek Vigor310 devices through 4.3.2.6 allow a remote attacker to change settings or cause a denial of service via .cgi pages because of missing bounds checks on read and write operations.
Affected products
- DrayTek VIGOR3910 Firmware: up to and including 4.3.2.6
Published 2024-10-03. Last modified 2026-06-17.