HIGH

CVE-2021-20123

Draytek Vigorconnect 2021-10-13 CVSS v3.1
CVSS
7.5
KEV

Description

A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the DownloadFileServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download arbitrary files from the underlying operating system with root privileges.

Summary dbcve.org

Local file inclusion vulnerability in Draytek VigorConnect 1.6.0-B3's DownloadFileServlet endpoint allows unauthenticated attackers to download arbitrary files from the OS with root privileges via path traversal in the file download functionality.

Mitigation

Apply vendor patch if available; otherwise, restrict network access to the VigorConnect management interface, implement WAF rules to block path traversal patterns, or disable the vulnerable DownloadFileServlet endpoint.

Proof of Concept

Weakness (CWE)

CWE-22 Path Traversal

EPSS Score

90.23%
Probability of exploitation in next 30 days
99.8th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE