CVE-2026-71931 | DrayTek VigorSwitch tftp_upgrade filename command injection

SecurityVulns

A vulnerability has been found in DrayTek VigorSwitch and classified as very critical. This issue affects the function tftp_upgrade. Performing a manipulation of the argument filename results in command injection.

This vulnerability is identified as CVE-2026-71931. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More