CVE-2024-41594 Information
Oct 04, 2024
cve
Description
An issue in DrayTek Vigor310 devices through 4.3.2.6 allows an attacker to obtain sensitive information because the httpd server of the Vigor management UI uses a static string for seeding the PRNG of OpenSSL.
Reference
https://www.forescout.com/resources/draytek14-vulnerabilities https://www.forescout.com/resources/draybreak-draytek-research/
Share on: