VYPR

VigorAP Series

by Draytek

CVEs (1)

  • CVE-2026-71906HigAug 24, 2026
    risk 0.47cvss 7.2epss

    Multiple DrayTek VigorAP models contain a command injection vulnerability in the setLan function. The vulnerability is caused by insufficient validation of the lanIp and lanNetmask fields before command execution. A remote attacker can trigger this vulnerability via crafted…