The security defect can be exploited remotely via crafted HTTP/S requests to a vulnerable device’s web user interface.

The post Unauthenticated RCE Flaw Patched in DrayTek Routers appeared first on SecurityWeek.