CVE-2026-71928 | DrayTek VigorSwitch Web Management Interface fdftDevice username/password command injection

SecurityVulns

A vulnerability classified as very critical was found in DrayTek VigorSwitch. Affected by this issue is the function fdftDevice of the component Web Management Interface. The manipulation of the argument username/password results in command injection.

This vulnerability was named CVE-2026-71928. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More