Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    I tried 0patch as a last resort for my Windows 10 PC – here’s how it compares to its promises

    January 20, 2026

    A PC Expert Explains Why Don’t Use Your Router’s USB Port When These Options Are Present

    January 20, 2026

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Draytek warned of remote code execution bug in Vigor router
    Security

    Draytek warned of remote code execution bug in Vigor router

    PineapplesUpdateBy PineapplesUpdateOctober 3, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Draytek warned of remote code execution bug in Vigor router
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Draytek warned of remote code execution bug in Vigor router

    Networking hardware manufacturer Draytek issued an advice to warn about a safety vulnerability in several strictly router models, which may allow remote, informal actors to execute arbitrary code.

    The defects, identified as CVE-2025–10547, were informed by the seller by Chapswjan Security Researcher Pierre-Yus Mess on 22 July.

    “The vulnerability can then be triggered when informal remote attacker sends HTTP or HTTPS requests prepared for the web user interface (webui),” Draytek’s security advisor reads,

    “Successful exploitation memory can cause corruption and a system crash, allowing distance code execution with capacity in some circumstances.”

    Draytek said that WAN exposure can be reduced by disabled remote webui/SSL VPN access or banned with ACLS/Vlan. However, Webui is available on LAN in touch with local attackers.

    MAES told bleepingcomputer that the root cause for CVE-2025-10547 is an inconvenient stack value that can be leveraged to cause causes Free() Affiliate Arbitrary free ()To obtain distance code execution (RCE).

    The researcher successfully tested his findings by creating an exploitation and running it on Draytek devices.

    The ongoing exploitation in Draytek’s security bulletin is not mentioned, but it is recommended to reduce the risk.

    Below are models affected by CVE-2025-10547, and the recommended firmware version upgrade to reduce the defect:

    • Vigor1000B, vigor2962, vigor3910/3912 → 4.4.3.6 or later (some models 4.4.5.1)
    • Vigor2135, vigor2763/2765/2766, vigor2865/2866 series (Incl. LTE & 5G), Vigor2927 Series (incl. LTE & 5G) → 4.5.1 or later or later
    • Vigor2915 series → 4.4.6.1 or later
    • Vigor2862/2926 Series (Incl. LTE) → 3.9.9.12 or later
    • Vigor2952/2952p, vigor3220 → 3.9.8.8 or later
    • Vigor2860/2925 series (Incl. LTE) → 3.9.8.6 or later
    • Vigor2133/2762/2832 series → 3.9.9.4 or later
    • Vigor2620 series → 3.9.9.5 or later
    • Vigorlte 200n → 3.9.9.3 or later

    Draytek router, especially Vigor models, prosecutors and small medium business (SMB) are very common in the atmosphere. The list of affected models includes a broad range, from the flagship model to the old router used in the DLS/telecommunications environment.

    System administrators are recommended to implement firmware security updates at the earliest. Maes says that he will disclose full technical details for Cve-2025-10547 tomorrow.


    Picus Base Summit

    attend Violation and attack simulation summit And experience Future of security verificationListen to top experts and see how AI-managed base Breach is changing and attacking simulation.

    Do not remember the event that will shape the future of your safety strategy

    Bug Code DrayTek Execution remote router Vigor warned
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticlePre-Opnea Researcher dissects one of the illusory spirals of chatgipt
    Next Article The student’s purpose is to change preventive health care
    PineapplesUpdate
    • Website

    Related Posts

    Startups

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026
    Startups

    How I used GPT-5.2-Codecs to solve a mystery bug and hosting nightmare in less than an hour

    January 19, 2026
    Startups

    A new earbud security flaw could leave you a victim of remote spying – here’s how to fix it

    January 18, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    Google tests AI-operated audio overview in search results for some questions

    June 16, 20250 Views
    Our Picks

    I tried 0patch as a last resort for my Windows 10 PC – here’s how it compares to its promises

    January 20, 2026

    A PC Expert Explains Why Don’t Use Your Router’s USB Port When These Options Are Present

    January 20, 2026

    New ‘Remote Labor Index’ shows AI fails 97% of the time in freelancer tasks

    January 19, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2026 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.