Vendor
DrayTek
As of , 5 DrayTek vulnerabilities are on CISA's list of exploited vulnerabilities; 0 were added in 2026. Patch first: CVE-2024-12987.
Patch first
| # | Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|---|
| 1 | CVE-2024-12987OS Command Injection | DrayTek Vigor Routers | Patch this weekEPSS 0.98 | 0.98 | ||
| 2 | CVE-2020-15415OS Command Injection | DrayTek Multiple Vigor Routers | Patch this weekEPSS 0.84 | 0.84 | ||
| 3 | CVE-2021-20123Path Traversal | DrayTek VigorConnect | Patch this weekEPSS 0.90 | 0.90 | ||
| 4 | CVE-2021-20124Path Traversal | DrayTek VigorConnect | Patch this weekEPSS 0.96 | 0.96 | ||
| 5 | CVE-2020-8515Multiple DrayTek Vigor Routers Web Management Page | DrayTek Multiple Vigor Routers | Patch this weekEPSS 0.99 | 0.99 |
Products
- Multiple Vigor Routers2 entries
- VigorConnect2 entries
- Vigor Routers1 entry
Added each year
Show the numbers
| Period | entries added |
|---|---|
| 2021 | 1 |
| 2022 | none |
| 2023 | none |
| 2024 | 3 |
| 2025 | 1 |
| 2026 | none |