DrayTek Router RCE vulnerability

Wed, 17 Aug 2022 21:40:00 Dan

CERT NZ is aware of a possible exploit that is affecting some #DrayTek #routers.

Attacks can be performed without user interaction if the management interface of the device has been configured to be internet facing. Exploitation of this #vulnerability can lead to a full compromise of the device and may lead to a network breach and unauthorized access to internal resources.

CERT NZ is not currently aware of active exploitation of this vulnerability. However, we strongly recommend you investigate and patch any DrayTek devices on your network as soon as possible to prevent them from being compromised.

More at https://www.cert.govt.nz/it-specialists/advisories/draytek-router-rce-vulnerability/

About the author


Dan

Dan

 

I'm a long-time user and enthusiast of open source software and espouse the philosophy that software code should be open (readable). So that everyone can see what happens behind the scenes while we use our electronic devices every day.