Two zero-day vulnerabilities in the DrayTek Vigor2962 router: RCE and buffer overflow
Attack Techniques & Methods2026-08-28, 09:36
Two zero-day vulnerabilities in the DrayTek Vigor2962 router: RCE and buffer overflow
The article examines two zero-day vulnerabilities discovered in the DrayTek Vigor2962 router. The first vulnerability involves remote code execution (RCE) through improper input handling in the device's web interface. The second vulnerability is a buffer overflow that occurs when processing certain configuration parameters.
Exploiting these vulnerabilities could potentially allow an attacker to gain control of the device with
root, especially if they have access to the administrative panel. The article also examines potential attack vectors, trigger conditions, and the impact of the vulnerabilities on network segmentation in SOHO/SMB environments, where this router is commonly used.Vendors
Products