CVE-2013-5703
Last modified
CVE-2013-5703 is a vulnerability of currently unknown severity. The DrayTek Vigor 2700 router 2.8.3 allows remote attackers to execute arbitrary JavaScript code, and modify settings or the DNS cache, via a crafted SSID value that is not properly handled during insertion into the sWlessSurvey value in variables.js.. EPSS estimates a 1.26% chance of exploitation in the next 30 days.
Description
The DrayTek Vigor 2700 router 2.8.3 allows remote attackers to execute arbitrary JavaScript code, and modify settings or the DNS cache, via a crafted SSID value that is not properly handled during insertion into the sWlessSurvey value in variables.js.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Draytek | Vigor 2700 Router Firmware | 2.8.3 |
| Draytek | Vigor 2700 Router | All versions |
References
- http://www.kb.cert.org/vuls/id/101462US Government Resource
- http://www.kb.cert.org/vuls/id/101462US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-5703?
How severe is CVE-2013-5703?
How do I fix CVE-2013-5703?
Are you affected by CVE-2013-5703?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
