CVE-2024-41338 | DrayTek Vigor LTE200 DHCP Request null pointer dereference (EUVD-2025-5967)
A vulnerability, which was classified as critical, was found in DrayTek Vigor 165, Vigor 166, Vigor 2133, Vigor 2135, Vigor 2620, Vigor 2762, Vigor 2765, Vigor 2766, Vigor 2832, Vigor 2860, Vigor 2862, Vigor 2865, Vigor 2866, Vigor 2925, Vigor 2925, Vigor 2926, Vigor 2927, Vigor 2962, Vigor 3910, Vigor 3912 and Vigor LTE200. Affected is an unknown function of the component DHCP Request Handler. The manipulation leads to null pointer dereference.
This vulnerability is traded as CVE-2024-41338. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.