Draytek AP912C
cpe:2.3:h:draytek:vigorap_912c:*:*:*:*:*:*:*, +1 more
- 1.4.9
A vulnerability exists in certain Draytek access point models, specifically the AP903 running version 1.4.18, and the AP912C and AP918R both on version 1.4.9. These models are affected by an insecure configuration that introduces a hardcoded weak password in the ripd.conf file. This flaw allows an attacker with network access to gain unauthorized control over the routing daemon, potentially leading to unauthorized changes in network routes or interception of traffic.
Exploitation of this vulnerability could allow an attacker to gain unauthorized control over the routing daemon, with the potential to alter network routes or intercept traffic.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.