DrayTek Weekly Update 16 September 2025

DrayTek Weekly Update 16 September 2025

Upcoming Webinar

Free Webinar – Security Features in DrayOS 5 Routers Part 2

Tuesday,23rd September 2025, 12:00 noon EST

Duration: 30 minutes

 

Tune into our next YouTube Premiere webinar:
Security Features in DrayOS 5 Routers Part 2

This webinar is the second part of our two-part series examining firewall and security features in DrayTek DrayOS 5 routers, with a focus on the Vigor2136 router. However, the information presented will also apply to other DrayOS 5 routers, such as the VigorC510 series.

Topics covered in this webinar are:
          -  Overview of What is Denial of Service (DoS)
          -  Defense Setup 
          -  MAC Filtering Profile
          -  IPv6 Address Security

Stay tuned for an extra five minutes, and we will be on hand to answer any questions.


Click here or this link: https://youtu.be/4vey8Q48KRI

Then click on “Notify me” to receive a reminder when this event is scheduled to start (the “Notify me” button will come up when you sign in on YouTube).

We hope to see you there!

 

Latest Knowledge Base Article

This article discusses Port knocking, a technology that can add an extra layer of protection to the internal servers. Its basic idea is that only open ports are at risk of being attacked, so it allows all ports to be closed at the beginning. It includes a short video.

Click here to view this article.

 

Latest Firmware

Improvements

          -  Improve Web GUI Security
          -  Add SNMP OID for WAN uptime
          -  Comply with EN 18031 cybersecurity requirements    

    -  Improve the Wi-Fi Driver Security (CVE-2025-20681~20684, CVE-2025-20688~20692)
          -  Add an option to enable/disable the force password change when using the ".def" file       

          -  Fixed: Router rebooted when ACS provisioned it with an XML file that included specific VPN settings

          -  Fixed: An unnecessary object menu appeared in the Objects Settings
          -  Fixed: Router reboot issues related to WCF, VoIP/KMC56 buffer leakage, TR-069, and long URL

Click here to download the firmware.

 

Improvements

·            -  Improve Web GUI Security

    -  Add SNMP OID for WAN uptime
    -  Comply with EN 18031 cybersecurity requirements    

    -  Improve the Wi-Fi Driver Security (CVE-2025-20681~20684, CVE-2025-20688~20692)
    -  Add an option to enable/disable the force password change when using the ".def" file       

    -  Fixed: Router rebooted when ACS provisioned it with an XML file that included specific VPN settings

    -  Fixed: An unnecessary object menu appeared in the Objects Settings
    -  Fixed: Router reboot issues related to WCF, VoIP/KMC56 buffer leakage, TR-069, and long URL·

Click here to download the firmware.

 

Improvements

·            -  Improve Web GUI Security

    -  Add SNMP OID for WAN uptime
    -  Comply with EN 18031 cybersecurity requirements    

    -  Improve the Wi-Fi Driver Security (CVE-2025-20681~20684, CVE-2025-20688~20692)
    -  Add an option to enable/disable the force password change when using the ".def" file       

    -  Fixed: Router rebooted when ACS provisioned it with an XML file that included specific VPN settings

    -  Fixed: An unnecessary object menu appeared in the Objects Settings

         -  Fixed: Router reboot issues related to WCF, VoIP/KMC56 buffer leakage, TR-069, and long URL·  

·    Click here to download the firmware.

 

Improvements

·               -  Improved Web GUI Security    
           - Comply with EN 18031 cybersecurity requirements
          -  Improve the Wi-Fi Driver Security (CVE-2025-20681~20684 CVE-2025-20688~20692).

         -  Add an option to enable/disable the force password change when using the ".def" file. 

          -  Fixed: LTE PPP mode did not work with EM060k-EA.

          -  Fixed: Router rebooted when provisioned by ACS with an XML file that included specific VPN settings.

Click here to download the firmware.

 

Improvements

·                  -  Improved Web GUI Security    

     - Comply with EN 18031 cybersecurity requirements
     -  Improve the Wi-Fi Driver Security (CVE-2025-20681~20684 CVE-2025-20688~20692).

     -  Add an option to enable/disable the force password change when using the ".def" file. 

      -  Fixed: LTE PPP mode did not work with EM060k-EA.

      -  Fixed: Router rebooted when provisioned by ACS with an XML file that included specific VPN settings.

    

Click here to download the firmware.

 

Improvements  

I          -  Improved Web GUI Security    

     - Comply with EN 18031 cybersecurity requirements

     -  Improve the Wi-Fi Driver Security (CVE-2025-20681~20684 CVE-2025-20688~20692).

     -  Fixed: An unnecessary object menu appeared in the Objects Settings

     -  Fixed: Auto APN did not match the pre-configured APN profile list

     - Fixed: Port Redirection over VPN to a host on the remote network did not work

Click here to download the firmware.

 

 

 

 

 

Calendar Events from DrayTek HQ

DrayTek HQ often sends notifications of system updates or outages, security notifications, and firmware releases.

 

Click here for the latest news from DrayTek HQ.

 


To subscribe to our regular news updates, click “Subscribe” on this page or log into your i-helpdesk account and enable the “Subscribe” option.