SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  DrayTek VigorConnect Path Traversal 2

Category: IoT-ATTACKS      

A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the WebServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download arbitrary files from the underlying operating system with root privileges.


Relevant Information