S4E just found a high top 10 tcp port service scan
high·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2021-20123 Scanner

CVE-2021-20123 scanner - Local File Inclusion vulnerability in Draytek VigorConnect

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
0
Times Used
by S4E users
0
Assets Scanned
domains & IPs
0
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2021-20123
7.5
CVSShigh
Exploitable remotely over the internet · no authentication required.

A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the DownloadFileServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download arbitrary files from the underlying operating system with root privileges.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
Draytek VigorConnectby n/a
1.6.0-B3
vigorconnectby draytek
1.6.0
Updated Aug 21, 2026View on NVD →
Detail

Draytek VigorConnect is a software solution designed to help small-to-medium-sized businesses manage and monitor their networking infrastructure. It provides a unified platform for monitoring and configuring multiple Draytek networking devices such as routers, switches, and access points. The software enables administrators to easily configure and monitor their network infrastructure from a single interface. Draytek VigorConnect is known for its reliability, security, and ease of use, making it a popular choice for businesses seeking an all-in-one network management solution.

The CVE-2021-20123 vulnerability is a local file inclusion vulnerability found in the Draytek VigorConnect 1.6.0-B3 software in the DownloadFileServlet endpoint. When exploited, an attacker can gain unauthorized access to files and directories on the underlying operating system and potentially download arbitrary files with root privileges. This vulnerability can be exploited remotely without authentication by sending a crafted HTTP request to the affected endpoint.

When exploited, the CVE-2021-20123 vulnerability can lead to the compromise of sensitive data, including system files and user credentials. Attackers can gain access to the underlying operating system and cause damage by deleting files, altering configurations, or executing malicious code. This vulnerability poses a severe threat to businesses that rely on the Draytek VigorConnect software, as it can expose them to data breaches and system malfunctions.

In conclusion, the security and integrity of digital assets are crucial for businesses of all sizes. By using advanced security tools such as s4e.io, businesses can easily and quickly learn about vulnerabilities in their infrastructure and take measures to protect against them. With s4e.io's pro features, businesses can get comprehensive vulnerability scanning, threat intelligence, and real-time security alerts to help them stay ahead of threats. Ensure that your digital assets are secure by subscribing to s4e.io today.

 

REFERENCES

Solution Advice

To protect against this vulnerability, users can take the following precautions:

  • Upgrade to the latest version of Draytek VigorConnect, which includes a patch for CVE-2021-20123.
  • Implement a firewall to restrict traffic to the DownloadFileServlet endpoint.
  • Limit access to the affected endpoint by enforcing authentication.
  • Regularly monitor logs for suspicious activity.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2021-20123 scanner - Local File Inclusion vulnerability in Draytek VigorConnect S4E