Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Draytek

First CVE: Oct 22, 2013Active for: 13 yearsTotal CVEs: 135
70.5
VTI Score
TOP TARGET

Draytek manufactures a widely deployed line of business-grade networking appliances and routers, particularly its Vigor series, which are prominent fixtures in small-to-medium enterprise and branch-office environments globally. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, driven by the internet-facing and management-accessible nature of these devices. The exposure recurs across the Vigor product line through firmware-level weakness classes including buffer overflows, OS and command injection, cross-site scripting, and out-of-bounds writes, reflecting the memory-safety and input-handling challenges inherent to embedded networking appliances. Defenders should prioritize inventory and patching of exposed Vigor instances, as these devices often sit at network perimeters with limited operational constraints on update cycles. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
135
Total CVEs
More Total CVEs than 99% of tracked vendors
0.0
Avg CVEs / Product / Year
Bottom 1%
8.1
Avg CVSS Score
Higher Avg CVSS Score than 79% of tracked vendors
3.7%
In CISA KEV
Higher KEV Rate than 99% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Draytek over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 22, 2013
12 years ago
Most Recent CVE
May 8, 2026
76 days ago

Products(280 total)

Top CVEs

Signals from CVEs in this vendor scope (135 CVEs).

135 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2020-8515CRITICAL
DrayTek Vigor2960 1.3.1_Beta, Vigor3900 1.4.4_Beta, and Vigor300B 1.3.3_Beta, 1.4.2.1_Beta, and 1.4.4_Beta devices allow remote code execution as root (without authentication) via
Feb 1, 20209.898YESYES
CVE-2024-12987CRITICAL
A vulnerability, which was classified as critical, was found in DrayTek Vigor2960 and Vigor300B 1.5.1.4. Affected is an unknown function of the file /cgi-bin/mainfunction.cgi/apmcf
Dec 27, 20249.897YESYES
CVE-2020-15415CRITICAL
On DrayTek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1, cgi-bin/mainfunction.cgi/cvmcfgupload allows remote command execution via shell metacharacters in a filename wh
Jun 30, 20209.897YESYES
CVE-2021-20123HIGH
A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the DownloadFileServlet endpoint. An unauthenticated attacker cou
Oct 13, 20217.594YESYES
CVE-2021-20124HIGH
A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the WebServlet endpoint. An unauthenticated attacker could levera
Oct 13, 20217.593YESYES
CVE-2020-10826CRITICAL
/cgi-bin/activate.cgi on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve command injection via a remote HTTP request in DEBUG mo
Mar 26, 20209.851NONO
CVE-2022-32548CRITICAL
An issue was discovered on certain DrayTek Vigor routers before July 2022 such as the Vigor3910 before 4.3.1.1. /cgi-bin/wlogin.cgi has a buffer overflow via the username or passwo
Aug 29, 20229.850NONO
CVE-2021-43118CRITICAL
A Remote Command Injection vulnerability exists in DrayTek Vigor 2960 1.5.1.3, DrayTek Vigor 3900 1.5.1.3, and DrayTek Vigor 300B 1.5.1.3 via a crafted HTTP message containing malf
Mar 29, 20229.849NONO
CVE-2024-12986CRITICAL
A vulnerability, which was classified as critical, has been found in DrayTek Vigor2960 and Vigor300B 1.5.1.3/1.5.1.4. This issue affects some unknown processing of the file /cgi-bi
Dec 27, 20249.848NONO
CVE-2023-1162HIGH
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in DrayTek Vigor 2960 1.5.1.4/1.5.1.5. Affected is an unknown function of the file main
Mar 3, 20238.840NONO
View all 135 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products135 CVEs
10%
68%
21%
Severity distribution among all CVEs352,101 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local3 (2.2%)
Network106 (78.5%)
Unknown1 (0.7%)
Physical0 (0.0%)
Adjacent Network25 (18.5%)
Attack Complexity
Low133 (98.5%)
High1 (0.7%)
Unknown1 (0.7%)
User Interaction
None122 (90.4%)
Unknown1 (0.7%)
Required12 (8.9%)
Privileges Required
Low47 (34.8%)
High2 (1.5%)
None85 (63.0%)
Unknown1 (0.7%)

Exploit Exposure

Signals from CVEs in this vendor scope (135 CVEs).

CISA KEV
5 CVEs
3.7% of CVEs· 99th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
5 CVEs
3.7% of CVEs· 95th percentile
ExploitDB
1 CVE
0.7% of CVEs· 74th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Draytek.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Draytek — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Draytek's Products

View all 6 CNAs →

Top CWEs