Loading
DrayTek Vigor3910 devices through 4.3.2.6 have a stack-based overflow when processing query string parameters because GetCGI mishandles extraneous ampersand characters and long key-value pairs.
Use CWE-121, Draytek vendor hub and Vigor2952 Firmware product page to widen CVE-2024-41592 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-32548, CVE-2024-51139 and CVE-2024-51138 for nearby disclosures in the same product family.