CVE-2024-51138
Last modified
CVE-2024-51138 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. Vigor165/166 4.2.7 and earlier; Vigor2620/LTE200 3.9.8.9 and earlier; Vigor2860/2925 3.9.8 and earlier; Vigor2862/2926 3.9.9.5 and earlier; Vigor2133/2762/2832 3.9.9 and earlier; Vigor2135/2765/2766 4.4.5. and earlier; Vigor2865/2866/2927 4.4.5.3 and earlier; Vigor2962 4.3.2.8 and earlier; Vigor3912 4.3.6.1 and earlier; Vigor3910 4.4.3.1 and earlier a stack-based buffer overflow vulnerability has been identified in the URL parsing functionality of the TR069 STUN server. EPSS estimates a 1.14% chance of exploitation in the next 30 days.
Description
Vigor165/166 4.2.7 and earlier; Vigor2620/LTE200 3.9.8.9 and earlier; Vigor2860/2925 3.9.8 and earlier; Vigor2862/2926 3.9.9.5 and earlier; Vigor2133/2762/2832 3.9.9 and earlier; Vigor2135/2765/2766 4.4.5. and earlier; Vigor2865/2866/2927 4.4.5.3 and earlier; Vigor2962 4.3.2.8 and earlier; Vigor3912 4.3.6.1 and earlier; Vigor3910 4.4.3.1 and earlier a stack-based buffer overflow vulnerability has been identified in the URL parsing functionality of the TR069 STUN server. This flaw occurs due to insufficient bounds checking on the amount of URL parameters, allowing an attacker to exploit the overflow by sending a maliciously crafted request. Consequently, a remote attacker can execute arbitrary code with elevated privileges.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Draytek | Vigor3912 Firmware | < 4.4.3.2 |
| Draytek | Vigor2620 Firmware | < 3.9.9.1 |
| Draytek | Vigorlte200 Firmware | < 3.9.9.1 |
| Draytek | Vigor2860 Firmware | < 3.9.8.3 |
| Draytek | Vigor2925 Firmware | < 3.9.8.3 |
| Draytek | Vigor2862 Firmware | < 3.9.9.8 |
| Draytek | Vigor2926 Firmware | < 3.9.9.8 |
| Draytek | Vigor2133 Firmware | < 3.9.9.2 |
| Draytek | Vigor2762 Firmware | < 3.9.9.2 |
| Draytek | Vigor2832 Firmware | < 3.9.9.2 |
| Draytek | Vigor2135 Firmware | < 4.4.5.5 |
| Draytek | Vigor2765 Firmware | < 4.4.5.5 |
| Draytek | Vigor2766 Firmware | < 4.4.5.5 |
| Draytek | Vigor2763 Firmware | < 4.4.5.5 |
| Draytek | Vigor2865 Firmware | < 4.4.5.8 |
| Draytek | Vigor2866 Firmware | < 4.4.5.8 |
| Draytek | Vigor2927 Firmware | < 4.4.5.8 |
| Draytek | Vigor2962 Firmware | < 4.3.2.9 |
| Draytek | Vigor2962 Firmware | >= 4.4.3, < 4.4.3.2 |
| Draytek | Vigor3910 Firmware | < 4.3.2.9 |
| Draytek | Vigor3910 Firmware | >= 4.4.3, < 4.4.3.2 |
| Draytek | Vigor2915 Firmware | < 4.4.5 |
| Draytek | Vigor1000b Firmware | < 4.4.3.2 |
| Draytek | Vigor2952 Firmware | < 3.9.8.5 |
| Draytek | Vigor3220 Firmware | < 3.9.8.5 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2024-51138?
How severe is CVE-2024-51138?
How do I fix CVE-2024-51138?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-51123An issue in Zertificon Z1 SecureMail Z1 SecureMail Gateway 4…7.5
- CVE-2024-51127An issue in the createTempFile method of hornetq v2.4.9 allo…7.1
- CVE-2024-5113A vulnerability was found in Campcodes Complete Web-Based Sc…6.5
- CVE-2024-51132An XML External Entity (XXE) vulnerability in HAPI FHIR befo…9.8
- CVE-2024-51135An XML External Entity (XXE) vulnerability in the component …9.8
- CVE-2024-51136An XML External Entity (XXE) vulnerability in Dmoz2CSV in op…9.8
- CVE-2024-51139Buffer Overflow vulnerability in Vigor2620/LTE200 3.9.8.9 an…9.8
- CVE-2024-5114A vulnerability classified as critical has been found in Cam…6.5
- CVE-2024-51141An issue in TOTOLINK Bluetooth Wireless Adapter A600UB allow…7.8
- CVE-2024-51142Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 …5.4
- CVE-2024-51144Cross Site Request Forgery (CSRF) vulnerability exists in th…8.8
- CVE-2024-5115A vulnerability classified as critical was found in Campcode…6.5
Are you affected by CVE-2024-51138?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
