CVE-2024-2257

CRITICAL

Digisol Router <3.2.02 - Info Disclosure

Title source: llm

Description

This vulnerability exists in Digisol Router (DG-GR1321: Hardware version 3.7L; Firmware version : v3.2.02) due to improper implementation of password policies. An attacker with physical access could exploit this by creating password that do not adhere to the defined security standards/policy on the vulnerable system. Successful exploitation of this vulnerability could allow the attacker to expose the router to potential security threats.

Exploits (1)

nomisec STUB
by Redfox-Security · poc
https://github.com/Redfox-Security/Digisol-DG-GR1321-s-Password-Policy-Bypass-CVE-2024-2257

Scores

CVSS v3 9.1
EPSS 0.0363
EPSS Percentile 87.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Details

CWE
CWE-20
Status published
Products (1)
Digisol/Digisol Router DG-GR1321 v3.2.02
Published May 14, 2024
Tracked Since Feb 18, 2026