<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>DrayTek - Latest News &amp; Reviews</title>
	<atom:link href="https://www.thetechoutlook.com/tag/draytek/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.thetechoutlook.com/tag/draytek/</link>
	<description>Daily Tech News, Interviews, Reviews and Updates</description>
	<lastBuildDate>Fri, 05 Aug 2022 05:42:26 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0</generator>

<image>
	<url>https://www.thetechoutlook.com/wp-content/uploads/2019/09/cropped-favicon-1-150x150.png</url>
	<title>DrayTek - Latest News &amp; Reviews</title>
	<link>https://www.thetechoutlook.com/tag/draytek/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>29 models of DrayTek routers impacted by critical RCE vulnerability</title>
		<link>https://www.thetechoutlook.com/news/security/29-models-of-draytek-routers-impacted-by-critical-rce-vulnerability/</link>
					<comments>https://www.thetechoutlook.com/news/security/29-models-of-draytek-routers-impacted-by-critical-rce-vulnerability/#respond</comments>
		
		<dc:creator><![CDATA[Blossom Hazarika]]></dc:creator>
		<pubDate>Fri, 05 Aug 2022 05:42:26 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[DrayTek]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[Rce]]></category>
		<category><![CDATA[Vigor]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<guid isPermaLink="false">https://www.thetechoutlook.com/?p=66577</guid>

					<description><![CDATA[<div style="margin-bottom:20px;"><img width="1200" height="675" src="https://www.thetechoutlook.com/wp-content/uploads/2022/08/20220805_090915_0000.jpg" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" fetchpriority="high" srcset="https://www.thetechoutlook.com/wp-content/uploads/2022/08/20220805_090915_0000.jpg 1200w, https://www.thetechoutlook.com/wp-content/uploads/2022/08/20220805_090915_0000-300x169.jpg 300w, https://www.thetechoutlook.com/wp-content/uploads/2022/08/20220805_090915_0000-1024x576.jpg 1024w, https://www.thetechoutlook.com/wp-content/uploads/2022/08/20220805_090915_0000-768x432.jpg 768w" sizes="(max-width: 1200px) 100vw, 1200px" /></div>
<p>Trellix Researchers recently discovered a critical unauthenticated remote code execution (RCE) vulnerability. This vulnerability is impacting 29 models of the DrayTek Vigor series of business routers.  The vulnerability has been labelled as CVE-2022-32548. It carries a maximum CVSS v3 severity score of 10.0 thus categorizing itself as critical.  In this vulnerability, the attacker doesn’t require [&#8230;]</p>
<p>The post <a href="https://www.thetechoutlook.com/news/security/29-models-of-draytek-routers-impacted-by-critical-rce-vulnerability/">29 models of DrayTek routers impacted by critical RCE vulnerability</a> appeared first on <a href="https://www.thetechoutlook.com">The Tech Outlook</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div style="margin-bottom:20px;"><img width="1200" height="675" src="https://www.thetechoutlook.com/wp-content/uploads/2022/08/20220805_090915_0000.jpg" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="" decoding="async" srcset="https://www.thetechoutlook.com/wp-content/uploads/2022/08/20220805_090915_0000.jpg 1200w, https://www.thetechoutlook.com/wp-content/uploads/2022/08/20220805_090915_0000-300x169.jpg 300w, https://www.thetechoutlook.com/wp-content/uploads/2022/08/20220805_090915_0000-1024x576.jpg 1024w, https://www.thetechoutlook.com/wp-content/uploads/2022/08/20220805_090915_0000-768x432.jpg 768w" sizes="(max-width: 1200px) 100vw, 1200px" /></div><p><span style="font-weight: 400;">Trellix Researchers recently discovered a critical unauthenticated remote code execution (RCE) vulnerability. This vulnerability is impacting 29 models of the DrayTek Vigor series of business routers. </span></p>
<p><span style="font-weight: 400;">The vulnerability has been labelled as CVE-2022-32548. It carries a maximum CVSS v3 severity score of 10.0 thus categorizing itself as critical. </span></p>
<p><span style="font-weight: 400;">In this vulnerability, the attacker doesn’t require access to credentials or user interaction to exploit the vulnerability. The attacker can use the default device configuration to make the attack viable via the internet and LAN. </span></p>
<p><span style="font-weight: 400;">The following functions can be carried out by a hacker who exploits this vulnerability: complete device takeover, gain access to information, lay grounds for stealthy man-in-the-middle attacks, change DNS settings, use the routers as DDoS or cryptominer bots or pivot devices connected to the breach network. </span></p>
<p><span style="font-weight: 400;">DrayTek Vigor facilitates excellent cost-efficient products for VPN access to small and medium-sized business networks. Because of this they were widely popular during the pandemic as “work-from-home” took over then. </span></p>
<p><span style="font-weight: 400;">Researchers have found an estimated 200,000 of the detected routers to expose the vulnerability service on the internet. Thus, it is readily exploitable without user interaction or any other special prerequisites. </span></p>
<p><span style="font-weight: 400;">The models, which are vulnerable, are as follows:</span></p>
<ul>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor3910</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor1000B</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2962 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2927 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor 2927 LTE Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor 2915 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor 2952 / 2952P</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor3230 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2926 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2926 LTE Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2862 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2862 LTE Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2620 LTE Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">VigorLTE 200n</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2133 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2762 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor167</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor130</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">VigorNIC 132</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor165</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor166</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2135 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2765 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2766 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2832</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2865 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2865 LTE Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2866 Series</span></li>
<li style="font-weight: 400;"><span style="font-weight: 400;">Vigor2866 LTE Series</span></li>
</ul>
<p><span style="font-weight: 400;">The security updates for all the above mentioned models can be found in the vendor&#8217;s firmware update centre. DrayTek quickly released the security updates for these models. </span></p>
<p>The post <a href="https://www.thetechoutlook.com/news/security/29-models-of-draytek-routers-impacted-by-critical-rce-vulnerability/">29 models of DrayTek routers impacted by critical RCE vulnerability</a> appeared first on <a href="https://www.thetechoutlook.com">The Tech Outlook</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://www.thetechoutlook.com/news/security/29-models-of-draytek-routers-impacted-by-critical-rce-vulnerability/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
