Lucene search

K
cvelistMitreCVELIST:CVE-2020-8515
HistoryFeb 01, 2020 - 12:36 p.m.

CVE-2020-8515

2020-02-0112:36:59
mitre
www.cve.org

9.8 High

AI Score

Confidence

High

0.971 High

EPSS

Percentile

99.8%

DrayTek Vigor2960 1.3.1_Beta, Vigor3900 1.4.4_Beta, and Vigor300B 1.3.3_Beta, 1.4.2.1_Beta, and 1.4.4_Beta devices allow remote code execution as root (without authentication) via shell metacharacters to the cgi-bin/mainfunction.cgi URI. This issue has been fixed in Vigor3900/2960/300B v1.5.1.