VDB
CVE-2026-71920
CVE-2026-71920
PUBLISHED
CVSS 6.9 MEDIUM
Reported by VulnCheck · Published August 24, 2026
Multiple DrayTek VigorSwitch models contain a null pointer dereference vulnerability in the formlogout function. The vulnerability is caused by missing checks for an empty or absent Cookie header before string handling. A remote attacker can trigger this vulnerability via a crafted request to crash the service and cause a denial of service. Exploitation requires valid administrative credentials for the device's web management interface.
Risk Scores
CVSS 4.0
6.9
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| DrayTek Corporation | VigorSwitch G2540xs | 0 |
| DrayTek Corporation | VigorSwitch P2540xs | 0 |
| DrayTek Corporation | VigorSwitch FX2120 | 0 |
| DrayTek Corporation | VigorSwitch G2282x | 0 |
| DrayTek Corporation | VigorSwitch P2282x | 0 |
| DrayTek Corporation | VigorSwitch Q2300x | 0 |
| DrayTek Corporation | VigorSwitch PQ2300xb | 0 |
| DrayTek Corporation | VigorSwitch G2542x | 0 |
| DrayTek Corporation | VigorSwitch P2542x | 0 |
| DrayTek Corporation | VigorSwitch P2542xh | 0 |
| DrayTek Corporation | VigorSwitch PX2060 | 0 |
| DrayTek Corporation | VigorSwitch G1280 | 0 |
| DrayTek Corporation | VigorSwitch P1280 | 0 |
| DrayTek Corporation | VigorSwitch P1281x | 0 |
| DrayTek Corporation | VigorSwitch G1282 | 0 |
| DrayTek Corporation | VigorSwitch P1282 | 0 |
| DrayTek Corporation | VigorSwitch G2121 | 0 |
| DrayTek Corporation | VigorSwitch P2121 | 0 |
| DrayTek Corporation | VigorSwitch PQ2121x | 0 |
| DrayTek Corporation | VigorSwitch Q2121x | 0 |
…and 50 more
Timeline
- Aug 24, 2026 Coalition ESS Score
- Aug 24, 2026 CVE Published
- Aug 25, 2026 EPSS Score
- Aug 26, 2026 CVE Updated
- Aug 27, 2026 EPSS Score
- Sep 1, 2026 EPSS Score
- Sep 4, 2026 EPSS Score
References
- vendor-advisory
- VulnCheck Advisory: DrayTek VigorSwitch Multiple Models NULL Pointer Dereference via formlogout third-party-advisory