CVE-2026-71906 | DrayTek VigorAP Web Management Interface setLan lanIp/lanNetmask command injection

SecurityVulns

A vulnerability categorized as very critical has been discovered in DrayTek VigorAP. This vulnerability affects the function setLan of the component Web Management Interface. Executing a manipulation of the argument lanIp/lanNetmask can lead to command injection.

This vulnerability appears as CVE-2026-71906. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More