Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-31447

28
FAUCET Score

CVE-2023-31447 is a critical vulnerability affecting Draytek Vigor2620 devices prior to firmware version 3.9.8.4 and all versions of Vigor2925 devices. This flaw allows unauthenticated attackers to send a specially crafted payload to the user_login.cgi endpoint, enabling the modification of code segments, injection of shellcode, and execution of arbitrary code on the device. With a CVSS score of 9.8 (Critical), the vulnerability is easily exploitable over the network with no user interaction, leading to complete compromise of confidentiality, integrity, and availability. While no public exploit code or active exploitation has been observed, and community discussion is minimal, the high severity warrants immediate patching for affected systems.

Impacted Technologies

VendorProductVersion(s)CPE
< 3.9.8.4CPE matchmatch criteria
cpe:2.3:o:draytek:vigor2620_firmware:*:*:*:*:*:*:*:*
All Versions ImpactedCPE matchmatch criteria
cpe:2.3:o:draytek:vigor2625_firmware:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

9.8CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.86%
Probability of exploitation in next 30 days
EPSS Percentile
54.8%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0086 is in the 39th percentile among its peer group of 36,862 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (7)

capnprotovendor investigatingvia llm_extracted
View patch
ciscovendor investigatingvia llm_extracted
View patch
hedgedocvendor investigatingvia llm_extracted
View patch
hpvendor investigatingvia llm_extracted
View patch
jenkinsvendor investigatingvia llm_extracted
View patch
lycheeorgvendor investigatingvia llm_extracted
View patch
yokogawavendor investigatingvia llm_extracted
View patch

Vendor Advisories (7)

yokogawallm-yokogawa-4f5fd5d727af0332

Format string vulnerability (CVE-2023-31447)

Aug 23, 2023
lycheeorgllm-lycheeorg-b018899e80295e83

Format string vulnerability (CVE-2023-31447)

Aug 23, 2023
jenkinsllm-jenkins-ecde59c81bd55a37

Format string vulnerability (CVE-2023-31447)

Aug 23, 2023
hpllm-hp-6c5addc5da1c816a

Format string vulnerability (CVE-2023-31447)

Aug 23, 2023
hedgedocllm-hedgedoc-c8941d4c21da5205

Format string vulnerability (CVE-2023-31447)

Aug 23, 2023
capnprotollm-capnproto-e9118f7a76d6bd88

Format string vulnerability (CVE-2023-31447)

Aug 23, 2023
ciscollm-cisco-1b4d8d3cd11a0e32

Format string vulnerability (CVE-2023-31447)

Aug 23, 2023

References

draytek.com
Product
gist.github.com / rrrrrrri/013c9eef64b265af4163478bfcf29ff4
Third Party Advisory