DrayTek (VigorConnect) Data Breach

DrayTek (VigorConnect) experienced a data breach that was reported on September 3, 2024. Draytek VigorConnect contains a path traversal vulnerability in the file download functionality of the WebServlet endpoint. An unauthenticated attacker could leverage this vulnerability to download ar

Key Facts

Organization
DrayTek (VigorConnect)
Date Reported
September 3, 2024
Incident Type
unknown
Industry
Technology
Severity Score
5/10
Confidence Level
high

Source

View original source - External link to primary source documentation

Understanding unknown Incidents

Data breaches can result in significant financial, operational, and reputational damage. Organizations should implement defense-in-depth strategies and maintain incident response capabilities.