CVE-2026-71936: DrayTek VigorSwitch Multiple Models Buffer Overflow via sysreboot
Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the sysreboot function. The vulnerability is caused by unsafe concatenation of split valueN data into a fixed-size buffer. A remote attacker can trigger this vulnerability via crafted input, causing a denial of service or potentially executing arbitrary commands. Exploitation requires valid administrative credentials for the device's web management interface.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this vulnerability?
A remote attacker must have valid administrative credentials for the device's web management interface. Unauthenticated users are not described as able to exploit it.
What is the potential impact of successful exploitation?
Crafted input to the affected sysreboot function can cause a denial of service or potentially allow arbitrary command execution. The reported impact includes confidentiality, integrity, and availability consequences.
What access should be restricted while remediation is pending?
Restrict access to the device web management interface, particularly administrative access, because exploitation requires valid administrator credentials. The provided information does not identify a separate workaround or configuration change.