CVE-2021-20123
Description
A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the DownloadFileServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download arbitrary files from the underlying operating system with root privileges.
Summary dbcve.org
Local file inclusion vulnerability in Draytek VigorConnect 1.6.0-B3's DownloadFileServlet endpoint allows unauthenticated attackers to download arbitrary files from the OS with root privileges via path traversal in the file download functionality.
Mitigation
Apply vendor patch if available; otherwise, restrict network access to the VigorConnect management interface, implement WAF rules to block path traversal patterns, or disable the vulnerable DownloadFileServlet endpoint.